📦 Envoy Firmware

by Enphase

🔍 What is Envoy Firmware?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2020-25753

CRITICAL CVSS 9.8 Jun 16, 2021

Enphase Envoy solar monitoring devices have a default admin password set to the last 6 digits of the device serial number, which can be retrieved by unauthenticated users via the /info.xml endpoint. T...

CVE-2020-25755

HIGH CVSS 8.8 Jun 16, 2021

This vulnerability allows authenticated remote attackers to execute arbitrary commands on Enphase Envoy solar energy monitoring devices via the force parameter in the upgrade_start function. It affect...