Binary MLM Software version 1.0 suffers from a remote SQL injection vulnerability.
9bf8aeb8aa0e6a5f74cf53040725bd5de169a295f71851dafd60a7a5ec55df55
# Exploit Title: Binary MLM Software 1.0 - 'pid' SQL Injection
# Dork: N/A
# Date: 2018-10-01
# Exploit Author: Ihsan Sencan
# Vendor Homepage: http://mlmsoftwarez.in/
# Software Link: http://mlmdemo.biz/binary/root.html
# Version: 1.0
# Category: Webapps
# Tested on: WiN7_x64/KaLiLinuX_x64
# CVE: N/A
# POC:
# http://localhost/[PATH]/member/tree.php?pid=[SQL]