The following WSO2 product is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible since a vulnerability allow remote attackers to achieve RCE (Remote code execution) on the service. Those vulnerabilities are currently used in ransomware campaign and could damage your network.
Reference:
Severity: critical
Fingerprint: 0ac2efb9e7a4e4a89a803d6200fae19000fae19000fae19000fae19000fae190
Found WSO2 product: Vulnerable to CVE-2022-29464
Open service 163.247.52.41:80
2024-12-21 23:26
HTTP/1.1 302 Found Set-Cookie: JSESSIONID=DD72745128D209309A30D78E54DB7DD7; Path=/; HttpOnly Location: http://163.247.52.41/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Sat, 21 Dec 2024 23:25:14 GMT Connection: close Server: WSO2 Carbon Server
Open service 163.247.52.41:80
2024-12-19 22:45
HTTP/1.1 302 Found Set-Cookie: JSESSIONID=D1EF802BC213AC4DD7899B5496089BC8; Path=/; HttpOnly Location: http://163.247.52.41/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Thu, 19 Dec 2024 22:44:51 GMT Connection: close Server: WSO2 Carbon Server
Open service 163.247.52.41:80
2024-12-17 23:38
HTTP/1.1 302 Found Set-Cookie: JSESSIONID=C28C88E9A4E36C3A16F2F8303BF1CF7A; Path=/; HttpOnly Location: http://163.247.52.41/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Tue, 17 Dec 2024 23:37:40 GMT Connection: close Server: WSO2 Carbon Server
Open service 163.247.52.41:80
2024-12-15 22:16
HTTP/1.1 302 Found Set-Cookie: JSESSIONID=AB17580AC4EA50341788D039008A201C; Path=/; HttpOnly Location: http://163.247.52.41/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Sun, 15 Dec 2024 22:15:43 GMT Connection: close Server: WSO2 Carbon Server
Open service 163.247.52.41:80
2024-12-13 21:27
HTTP/1.1 302 Found Set-Cookie: JSESSIONID=05B79E05EF55EF2A780A8595F6FE8D2F; Path=/; HttpOnly Location: http://163.247.52.41/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Fri, 13 Dec 2024 21:26:46 GMT Connection: close Server: WSO2 Carbon Server
Open service 163.247.52.41:80
2024-12-11 22:02
HTTP/1.1 302 Found Set-Cookie: JSESSIONID=661F34502A04E37A4BA69EC67F4C0B5B; Path=/; HttpOnly Location: http://163.247.52.41/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Wed, 11 Dec 2024 22:01:46 GMT Connection: close Server: WSO2 Carbon Server
Open service 163.247.52.41:80
2024-12-01 22:23
HTTP/1.1 302 Found Set-Cookie: JSESSIONID=244168FA4DAAEA11F2E0395B00F9CA51; Path=/; HttpOnly Location: http://163.247.52.41/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Sun, 01 Dec 2024 22:22:17 GMT Connection: close Server: WSO2 Carbon Server
Open service 163.247.52.41:80
2024-11-30 00:00
HTTP/1.1 302 Found Set-Cookie: JSESSIONID=58CF1FDDFAF1DBC8C5BB7295E93C50EE; Path=/; HttpOnly Location: http://163.247.52.41/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Fri, 29 Nov 2024 23:59:30 GMT Connection: close Server: WSO2 Carbon Server
Open service 163.247.52.41:80
2024-11-27 21:59
HTTP/1.1 302 Found Set-Cookie: JSESSIONID=4BE107FEE3993C4185E885517238F3ED; Path=/; HttpOnly Location: http://163.247.52.41/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Wed, 27 Nov 2024 21:58:33 GMT Connection: close Server: WSO2 Carbon Server
Open service 163.247.52.41:8020
2024-11-20 14:33
HTTP/1.1 200 OK Content-Length: 4504 Connection: close Cache-Control: no-cache Content-Type: text/html; charset=utf-8 X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block X-Content-Type-Options: nosniff Content-Security-Policy: frame-ancestors 'self'