Security Vulnerability in SYNC Devices by Kalkitech
CVE-2021-44564
8.1HIGH
What is CVE-2021-44564?
A significant security flaw affects certain SYNC devices, enabling an attacker with network access and knowledge of the device's IP address to download and potentially modify the configuration file. This vulnerability exploits an unsecured communication channel between the administration tool, Easyconnect, and the affected SYNC products. It underscores the critical need for enhancing communication security and access controls within networked devices to prevent unauthorized configuration changes.
