The following WSO2 product is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible since a vulnerability allow remote attackers to achieve RCE (Remote code execution) on the service. Those vulnerabilities are currently used in ransomware campaign and could damage your network.
Reference:
Severity: critical
Fingerprint: 0ac2efb9e7a4e4a89a803d6200fae19000fae19000fae19000fae19000fae190
Found WSO2 product: Vulnerable to CVE-2022-29464
Open service 194.5.170.186:443 · portail.apim4.api.din.developpement-durable.gouv.fr
2024-12-21 01:35
HTTP/1.1 302 Found Date: Sat, 21 Dec 2024 01:36:03 GMT Server: WSO2 Carbon Server Strict-Transport-Security: max-age=31536000 content-length: 0 location: https://portail.api.din.developpement-durable.gouv.fr:443/publisher/ x-content-type-options: nosniff set-cookie: JSESSIONID=1DF985018FFE4D4913A29B4B4320E375; Path=/; Secure; HttpOnly set-cookie: SRV=1208cfe7-27ec-4da5-9394-c5ad02c57530; path=/ Connection: close
Open service 194.5.170.186:443 · portail.apim4.api.din.developpement-durable.gouv.fr
2024-12-19 03:33
HTTP/1.1 302 Found Date: Thu, 19 Dec 2024 03:33:12 GMT Server: WSO2 Carbon Server Strict-Transport-Security: max-age=31536000 content-length: 0 location: https://portail.api.din.developpement-durable.gouv.fr:443/publisher/ x-content-type-options: nosniff set-cookie: JSESSIONID=2930B045CC41C8EB6F5FFE63B4FB7EC5; Path=/; Secure; HttpOnly set-cookie: SRV=1208cfe7-27ec-4da5-9394-c5ad02c57530; path=/ Connection: close
Open service 194.5.170.186:443 · portail.apim4.api.din.developpement-durable.gouv.fr
2024-12-17 20:10
HTTP/1.1 302 Found Date: Tue, 17 Dec 2024 20:10:44 GMT Server: WSO2 Carbon Server Strict-Transport-Security: max-age=31536000 content-length: 0 location: https://portail.api.din.developpement-durable.gouv.fr:443/publisher/ x-content-type-options: nosniff set-cookie: JSESSIONID=70F106720C7234365B6399667190B12E; Path=/; Secure; HttpOnly set-cookie: SRV=1208cfe7-27ec-4da5-9394-c5ad02c57530; path=/ Connection: close
Open service 194.5.170.186:443 · portail.apim4.api.din.developpement-durable.gouv.fr
2024-12-14 10:46
HTTP/1.1 302 Found Date: Sat, 14 Dec 2024 10:46:56 GMT Server: WSO2 Carbon Server Strict-Transport-Security: max-age=31536000 content-length: 0 location: https://portail.api.din.developpement-durable.gouv.fr:443/publisher/ x-content-type-options: nosniff set-cookie: JSESSIONID=3C0EB03345C3A2DAA483E09A53DE3FA3; Path=/; Secure; HttpOnly set-cookie: SRV=1208cfe7-27ec-4da5-9394-c5ad02c57530; path=/ Connection: close
Open service 194.5.170.186:443 · portail.apim4.api.din.developpement-durable.gouv.fr
2024-12-12 20:16
HTTP/1.1 302 Found Date: Thu, 12 Dec 2024 20:16:48 GMT Server: WSO2 Carbon Server Strict-Transport-Security: max-age=31536000 content-length: 0 location: https://portail.api.din.developpement-durable.gouv.fr:443/publisher/ x-content-type-options: nosniff set-cookie: JSESSIONID=89CC09B62A654890FAE685CD391E974C; Path=/; Secure; HttpOnly set-cookie: SRV=1208cfe7-27ec-4da5-9394-c5ad02c57530; path=/ Connection: close
Open service 194.5.170.186:443 · portail.apim4.api.din.developpement-durable.gouv.fr
2024-12-02 19:35
HTTP/1.1 302 Found Date: Mon, 02 Dec 2024 19:35:59 GMT Server: WSO2 Carbon Server Strict-Transport-Security: max-age=31536000 content-length: 0 location: https://portail.api.din.developpement-durable.gouv.fr:443/publisher/ x-content-type-options: nosniff set-cookie: JSESSIONID=4D3BBCD84E6A68344D6537D2A6EE809C; Path=/; Secure; HttpOnly set-cookie: SRV=bc50b681-6830-4791-aace-4d1742a26c00; path=/ Connection: close
Open service 194.5.170.186:443 · portail.apim4.api.din.developpement-durable.gouv.fr
2024-11-30 16:28
HTTP/1.1 302 Found Date: Sat, 30 Nov 2024 16:28:10 GMT Server: WSO2 Carbon Server Strict-Transport-Security: max-age=31536000 content-length: 0 location: https://portail.api.din.developpement-durable.gouv.fr:443/publisher/ x-content-type-options: nosniff set-cookie: JSESSIONID=9B366CBCC88424C9827ECFA44F5F2BAA; Path=/; Secure; HttpOnly set-cookie: SRV=1208cfe7-27ec-4da5-9394-c5ad02c57530; path=/ Connection: close
Open service 194.5.170.186:443 · portail.apim4.api.din.developpement-durable.gouv.fr
2024-11-28 16:07
HTTP/1.1 302 Found Date: Thu, 28 Nov 2024 16:07:34 GMT Server: WSO2 Carbon Server Strict-Transport-Security: max-age=31536000 content-length: 0 location: https://portail.api.din.developpement-durable.gouv.fr:443/publisher/ x-content-type-options: nosniff set-cookie: JSESSIONID=714A141D50125B63C9F73BA1D0387250; Path=/; Secure; HttpOnly set-cookie: SRV=1208cfe7-27ec-4da5-9394-c5ad02c57530; path=/ Connection: close
Open service 194.5.170.186:443 · portail.apim4.api.din.developpement-durable.gouv.fr
2024-11-26 16:27
HTTP/1.1 302 Found Date: Tue, 26 Nov 2024 16:27:08 GMT Server: WSO2 Carbon Server Strict-Transport-Security: max-age=31536000 content-length: 0 location: https://portail.api.din.developpement-durable.gouv.fr:443/publisher/ x-content-type-options: nosniff set-cookie: JSESSIONID=165C1CE8A6891DD9E6361202E8835E45; Path=/; Secure; HttpOnly set-cookie: SRV=1208cfe7-27ec-4da5-9394-c5ad02c57530; path=/ Connection: close
Open service 194.5.170.186:443 · portail.apim4.api.din.developpement-durable.gouv.fr
2024-11-20 17:43
HTTP/1.1 302 Found Date: Wed, 20 Nov 2024 17:43:29 GMT Server: WSO2 Carbon Server Strict-Transport-Security: max-age=31536000 content-length: 0 location: https://portail.api.din.developpement-durable.gouv.fr:443/publisher/ x-content-type-options: nosniff set-cookie: JSESSIONID=7E314AE50B8E4E1521225FD81DDEF630; Path=/; Secure; HttpOnly set-cookie: SRV=1208cfe7-27ec-4da5-9394-c5ad02c57530; path=/ Connection: close