Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown
CVE-2021-28936
Disclosure Date: March 29, 2021 (last updated February 22, 2025)
The Acexy Wireless-N WiFi Repeater REV 1.0 (28.08.06.1) Web management administrator password can be changed by sending a specially crafted HTTP GET request. The administrator username has to be known (default:admin) whereas no previous authentication is required.
0
Attacker Value
Unknown
CVE-2021-28937
Disclosure Date: March 29, 2021 (last updated February 22, 2025)
The /password.html page of the Web management interface of the Acexy Wireless-N WiFi Repeater REV 1.0 (28.08.06.1) contains the administrator account password in plaintext. The page can be intercepted on HTTP.
0
Attacker Value
Unknown
CVE-2021-28160
Disclosure Date: March 18, 2021 (last updated February 22, 2025)
Wireless-N WiFi Repeater REV 1.0 (28.08.06.1) suffers from a reflected XSS vulnerability due to unsanitized SSID value when the latter is displayed in the /repeater.html page ("Repeater Wizard" homepage section).
0