evolutionscript v5.0 Mullti Vulnerability ========================================= Author : indoushka Vondor : http://EvolutionScript.com Dork : Powered by EvolutionScript Version 5.0 Copyright © 2010 - 2015 EvolutionScript.com ========================= Sql injection : C:\AppServ\www\EvolutionScript\includes\init.php Line 145 mysqli::query $todayis,$user_info['id'] poc: http://www.twickerz.com/bannerclick.php?id=15806 (inject her) Xss : C:\AppServ\www\EvolutionScript\includes\functions.php Line 154 echo $stored XSS ( HTML Inject ) - jQuery v1.8.2 : save the code in name.html and open it