The following WSO2 product is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible since a vulnerability allow remote attackers to achieve RCE (Remote code execution) on the service. Those vulnerabilities are currently used in ransomware campaign and could damage your network.
Reference:
Severity: critical
Fingerprint: 0ac2efb9e7a4e4a89a803d6200fae19000fae19000fae19000fae19000fae190
Found WSO2 product: Vulnerable to CVE-2022-29464
Open service 136.224.32.33:443 · ethos.alfredstate.edu
2024-12-20 23:26
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=AD645E94761FF94AC1C551BCC9F8CF0A; Path=/; Secure; HttpOnly Location: https://ethos.alfredstate.edu/carbon Content-Length: 0 Date: Fri, 20 Dec 2024 23:26:44 GMT Connection: close Server: WSO2 Carbon Server
Open service 136.224.32.33:443 · ethos.alfredstate.edu
2024-12-19 03:39
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=45F1B574CD82F6D944406B22F47DE553; Path=/; Secure; HttpOnly Location: https://ethos.alfredstate.edu/carbon Content-Length: 0 Date: Thu, 19 Dec 2024 03:39:14 GMT Connection: close Server: WSO2 Carbon Server
Open service 136.224.32.33:443 · ethos.alfredstate.edu
2024-12-14 15:01
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=0296FAE6C8EB34B9FA903B92FFCEFF30; Path=/; Secure; HttpOnly Location: https://ethos.alfredstate.edu/carbon Content-Length: 0 Date: Sat, 14 Dec 2024 15:01:41 GMT Connection: close Server: WSO2 Carbon Server
Open service 136.224.32.33:443 · ethos.alfredstate.edu
2024-12-13 00:03
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=04140144EB17FCA2FA08B87494AECD4A; Path=/; Secure; HttpOnly Location: https://ethos.alfredstate.edu/carbon Content-Length: 0 Date: Fri, 13 Dec 2024 00:03:19 GMT Connection: close Server: WSO2 Carbon Server
Open service 136.224.32.33:443 · ethos.alfredstate.edu
2024-12-02 19:56
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=6D48F5571C589F501416961C4CC4A27A; Path=/; Secure; HttpOnly Location: https://ethos.alfredstate.edu/carbon Content-Length: 0 Date: Mon, 02 Dec 2024 19:56:25 GMT Connection: close Server: WSO2 Carbon Server
Open service 136.224.32.33:443 · ethos.alfredstate.edu
2024-11-30 05:01
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=979AD07370D0F66AD7290B989F0107F6; Path=/; Secure; HttpOnly Location: https://ethos.alfredstate.edu/carbon Content-Length: 0 Date: Sat, 30 Nov 2024 05:01:20 GMT Connection: close Server: WSO2 Carbon Server
Open service 136.224.32.33:443 · ethos.alfredstate.edu
2024-11-28 05:11
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=A28636313FE5B0166E02ACE24850410F; Path=/; Secure; HttpOnly Location: https://ethos.alfredstate.edu/carbon Content-Length: 0 Date: Thu, 28 Nov 2024 05:11:18 GMT Connection: close Server: WSO2 Carbon Server
Open service 136.224.32.33:443 · ethos.alfredstate.edu
2024-11-27 00:45
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=89191BDB3377C567A84192E24D80F108; Path=/; Secure; HttpOnly Location: https://ethos.alfredstate.edu/carbon Content-Length: 0 Date: Wed, 27 Nov 2024 00:45:49 GMT Connection: close Server: WSO2 Carbon Server
Open service 136.224.32.33:443 · ethos.alfredstate.edu
2024-11-20 13:27
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=CE3B4F643D9A196A44859C7524E04F3A; Path=/; Secure; HttpOnly Location: https://ethos.alfredstate.edu/carbon Content-Length: 0 Date: Wed, 20 Nov 2024 13:27:21 GMT Connection: close Server: WSO2 Carbon Server