Did you contact the scooter company to report this and give them a chance to improve the security of their admin panel before posting?
With a couple minutes of research, I'm pretty sure I found their website and was able to confirm the painel subdomain still displays a user/password login form. If the admin password is actually trivial to guess (I won't try) I'm pretty sure you won't be the only one visiting their system if the weakness still exists and this post gets some traction.
oh well don't worry, these companies are basically off the shelf business