PHP remote file inclusion vulnerability in class/class.php in Webavis 0.1.1 allows remote attackers to execute arbitrary PHP code via a URL in the root parameter.Referenceshttp://osvdb.org/38050http://www.vupen.com/english/advisories/2007/1963https://www.exploit-db.com/exploits/3987