The following WSO2 product is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible since a vulnerability allow remote attackers to achieve RCE (Remote code execution) on the service. Those vulnerabilities are currently used in ransomware campaign and could damage your network.
Reference:
Severity: critical
Fingerprint: 0ac2efb9e7a4e4a89a803d6200fae19000fae19000fae19000fae19000fae190
Found WSO2 product: Vulnerable to CVE-2022-29464
Open service 158.160.116.81:9443
2024-12-22 00:46
HTTP/1.1 302 X-WSO2-TraceId: c8549f67-ca1f-44cd-ad81-07f33afe2f53 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=C8FA1B9869637BAD79BE2E0852E4E1BE; Path=/; Secure; HttpOnly Location: https://openapi.renins.com:443/devportal/ Content-Length: 0 Date: Sun, 22 Dec 2024 00:46:36 GMT Connection: close Server: WSO2 Carbon Server
Open service 158.160.116.81:9443
2024-12-19 23:57
HTTP/1.1 302 X-WSO2-TraceId: 8709657b-55a6-4571-8eb0-b468a64224f3 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=82C9339FF0E66932AF67C2723C196800; Path=/; Secure; HttpOnly Location: https://openapi.renins.com:443/devportal/ Content-Length: 0 Date: Thu, 19 Dec 2024 23:57:40 GMT Connection: close Server: WSO2 Carbon Server
Open service 158.160.116.81:9443
2024-12-17 22:05
HTTP/1.1 302 X-WSO2-TraceId: e3b4b5ca-44cc-4cea-9177-1017cdda71ea X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=4B0354E991B2DEA033F5979143BE7D10; Path=/; Secure; HttpOnly Location: https://openapi.renins.com:443/devportal/ Content-Length: 0 Date: Tue, 17 Dec 2024 22:05:32 GMT Connection: close Server: WSO2 Carbon Server
Open service 158.160.116.81:9443
2024-12-15 21:44
HTTP/1.1 302 X-WSO2-TraceId: d86edc78-00a3-4ff4-8744-00a94a8e9566 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=C3760AB319184A5A3613D63CAC55871C; Path=/; Secure; HttpOnly Location: https://openapi.renins.com:443/devportal/ Content-Length: 0 Date: Sun, 15 Dec 2024 21:44:31 GMT Connection: close Server: WSO2 Carbon Server
Open service 158.160.116.81:9443
2024-12-13 21:59
HTTP/1.1 302 X-WSO2-TraceId: 3275087f-cd22-481f-ab75-aa12da7062a6 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=5981312B760F43C93FCDFAB044268EBE; Path=/; Secure; HttpOnly Location: https://openapi.renins.com:443/devportal/ Content-Length: 0 Date: Fri, 13 Dec 2024 21:59:59 GMT Connection: close Server: WSO2 Carbon Server
Open service 158.160.116.81:9443
2024-12-11 23:39
HTTP/1.1 302 X-WSO2-TraceId: 2662e14f-158a-4a99-87e9-a9f7685e8896 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=E5BDC54F7D35C92B0F42240B0CC650FB; Path=/; Secure; HttpOnly Location: https://openapi.renins.com:443/devportal/ Content-Length: 0 Date: Wed, 11 Dec 2024 23:39:42 GMT Connection: close Server: WSO2 Carbon Server
Open service 158.160.116.81:9443
2024-12-01 23:15
HTTP/1.1 302 X-WSO2-TraceId: 965d1b8f-ba7e-483c-b9af-536f9f7345f0 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=5FEE1A75D4A0EDB1A2EBDD154BBB71EF; Path=/; Secure; HttpOnly Location: https://openapi.renins.com:443/devportal/ Content-Length: 0 Date: Sun, 01 Dec 2024 23:15:14 GMT Connection: close Server: WSO2 Carbon Server
Open service 158.160.116.81:9443
2024-11-29 23:31
HTTP/1.1 302 X-WSO2-TraceId: 2cf81bad-12ae-4476-8522-b658a4be70a2 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=EE89375074ACCF635611D797311CE6E1; Path=/; Secure; HttpOnly Location: https://openapi.renins.com:443/devportal/ Content-Length: 0 Date: Fri, 29 Nov 2024 23:31:55 GMT Connection: close Server: WSO2 Carbon Server
Open service 158.160.116.81:9443
2024-11-27 23:52
HTTP/1.1 302 X-WSO2-TraceId: 0f58b45b-92c5-4bef-81c1-fdd0e1653756 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=421D6903F6609902CE546D390F9A6896; Path=/; Secure; HttpOnly Location: https://openapi.renins.com:443/devportal/ Content-Length: 0 Date: Wed, 27 Nov 2024 23:52:45 GMT Connection: close Server: WSO2 Carbon Server