Binary MLM Software version 1.0 suffers from a remote SQL injection vulnerability.
9c2df885f296250cbb94200c33d4ff6f
# Exploit Title: Binary MLM Software 1.0 - 'pid' SQL Injection
# Dork: N/A
# Date: 2018-10-01
# Exploit Author: Ihsan Sencan
# Vendor Homepage: http://mlmsoftwarez.in/
# Software Link: http://mlmdemo.biz/binary/root.html
# Version: 1.0
# Category: Webapps
# Tested on: WiN7_x64/KaLiLinuX_x64
# CVE: N/A
# POC:
# http://localhost/[PATH]/member/tree.php?pid=[SQL]