"value":"Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability through a url parameter in Enphase IQ Gateway (formerly known as Envoy) allows File Manipulation. The endpoint requires authentication.This issue affects Envoy: from 4.x to 8.0 and\u00a0< 8.2.4225."
}
]
},
"problemtype":{
"problemtype_data":[
{
"description":[
{
"lang":"eng",
"value":"CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')",
"value":"It is adviced to not expose this device to untrusted network acces. In other words, make sure this decvice is not reachable from the internet, a guest network or a public network.",
"supportingMedia":[
{
"type":"text/html",
"base64":false,
"value":"It is adviced to not expose this device to untrusted network acces. In other words, make sure this decvice is not reachable from the internet, a guest network or a public network."
}
]
}
],
"solution":[
{
"lang":"en",
"value":"Devices are remotely being updated by the vendor.",
"supportingMedia":[
{
"type":"text/html",
"base64":false,
"value":"Devices are remotely being updated by the vendor."