A directory traversal vulnerability exists in Enphase Envoy R3.*.* via images/, include/, include/js, or include/css on TCP port 8888.
enphase envoy