S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
high·Product Based Web Vulnerabilities·Updated Dec 16, 2023

CVE-2021-28937 Scanner

Detects 'Admin Credential Disclosure' vulnerability in Acexy Wireless-N WiFi Repeater affects v. 1.0 (28.08.06.1).

Est. Time~15 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.1k
Times Used
continuous scan runs
4.8k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2021-28937
7.5
CVSS

The /password.html page of the Web management interface of the Acexy Wireless-N WiFi Repeater REV 1.0 (28.08.06.1) contains the administrator account password in plaintext. The page can be intercepted on HTTP.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 21, 2026View on NVD →
Detail

Acexy Wireless-N WiFi Repeater is a networking device that extends the range of an existing wireless network. This device is popular among households and small businesses that require a reliable WiFi signal throughout their premises. The primary function of this device is to amplify signals and eliminate dead zones to provide a seamless internet experience.

However, the Acexy Wireless-N WiFi Repeater has recently been found to contain a critical vulnerability in its web management interface. The vulnerability is identified as CVE-2021-28937 and it allows the plaintext password of the administrator account to be reflected in the /password.html HTML page. This means that anyone with access to the page can easily intercept the login details and gain access to the device.

The exploitation of this vulnerability can have serious consequences for the users of this device. Cybercriminals can potentially gain control over the device and access the user's personal information. They can also launch cyber attacks, steal sensitive data, and use the device for malicious activities without the user's knowledge.

In conclusion, s4e.io offers pro features that can help users stay informed about vulnerabilities in their digital assets. With the help of this platform, users can quickly and easily identify vulnerabilities and take necessary actions to mitigate them. It is essential for users of the Acexy Wireless-N WiFi Repeater to stay vigilant and take proactive measures to protect themselves from cyber threats.

 

REFERENCES

Solution Advice

To protect against this vulnerability, users of the Acexy Wireless-N WiFi Repeater are advised to take the following measures:

  • Update the firmware of the device to the latest version.
  • Avoid accessing the web management interface of the device on an unsecured network.
  • Change the administrator account password immediately.
  • Use a strong and unique password for the administrator account.
  • Enable 2-factor authentication for the web management interface.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2021-28937 scanner - Admin Credential Disclosure vulnerability in Acexy Wireless-N WiFi Repeater | S4E