Bhojon Restaurant Management System version 2.9 suffers from an ignored default credential vulnerability.