# Exploit Title: Binary MLM Software 1.0 - 'pid' SQL Injection # Dork: N/A # Date: 2018-10-01 # Exploit Author: Ihsan Sencan # Vendor Homepage: http://mlmsoftwarez.in/ # Software Link: http://mlmdemo.biz/binary/root.html # Version: 1.0 # Category: Webapps # Tested on: WiN7_x64/KaLiLinuX_x64 # CVE: N/A # POC: # http://localhost/[PATH]/member/tree.php?pid=[SQL]