Satndy · Aplikasi-Biro-Travel · CVE-2021-47848
**Name of the Vulnerable Software and Affected Versions**
Blitar Tourism version 1.0
**Description**
An authentication bypass allows attackers to gain unauthorized administrative access by injecting SQL code through the `username` parameter during the login request.
**Recommendations**
Update Blitar Tourism version 1.0 to a version that addresses this issue. As a temporary workaround, restrict access to the login functionality or implement input validation for the `username` parameter.