The following WSO2 product is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible since a vulnerability allow remote attackers to achieve RCE (Remote code execution) on the service. Those vulnerabilities are currently used in ransomware campaign and could damage your network.
Reference:
Severity: critical
Fingerprint: 0ac2efb9e7a4e4a89a803d6200fae19000fae19000fae19000fae19000fae190
Found WSO2 product: Vulnerable to CVE-2022-29464
Open service 185.148.162.120:9443
2024-12-21 23:34
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=4287AE672ACF68F9AB71309BCFA22645; Path=/; Secure; HttpOnly Location: https://toll.app.viasattech.com:9443/publisher/ Content-Length: 0 Date: Sat, 21 Dec 2024 23:34:33 GMT Connection: close Server: WSO2 Carbon Server
Open service 185.148.162.120:9443
2024-12-19 23:22
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=BDEFC10CF4C67396B53C7816F656DA9D; Path=/; Secure; HttpOnly Location: https://toll.app.viasattech.com:9443/publisher/ Content-Length: 0 Date: Thu, 19 Dec 2024 23:22:18 GMT Connection: close Server: WSO2 Carbon Server
Open service 185.148.162.120:9443
2024-12-18 00:10
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=D45ACD471102533D50358BA7065E72CB; Path=/; Secure; HttpOnly Location: https://toll.app.viasattech.com:9443/publisher/ Content-Length: 0 Date: Wed, 18 Dec 2024 00:10:09 GMT Connection: close Server: WSO2 Carbon Server
Open service 185.148.162.120:9443
2024-12-15 22:06
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=8C03C63AA25CB6A46A7BF92929EC4EB1; Path=/; Secure; HttpOnly Location: https://toll.app.viasattech.com:9443/publisher/ Content-Length: 0 Date: Sun, 15 Dec 2024 22:06:59 GMT Connection: close Server: WSO2 Carbon Server
Open service 185.148.162.120:9443
2024-12-13 21:34
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=2E8F0ADA6F95565616BBE071BAA4F1CA; Path=/; Secure; HttpOnly Location: https://toll.app.viasattech.com:9443/publisher/ Content-Length: 0 Date: Fri, 13 Dec 2024 21:34:47 GMT Connection: close Server: WSO2 Carbon Server
Open service 185.148.162.120:9443
2024-12-12 00:24
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=AC620988C1E7908C68C1004080AD076C; Path=/; Secure; HttpOnly Location: https://toll.app.viasattech.com:9443/publisher/ Content-Length: 0 Date: Thu, 12 Dec 2024 00:24:55 GMT Connection: close Server: WSO2 Carbon Server
Open service 185.148.162.120:9443
2024-12-02 01:01
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=EB30AB42BC3310C665BFF88E6A0F4D3C; Path=/; Secure; HttpOnly Location: https://toll.app.viasattech.com:9443/publisher/ Content-Length: 0 Date: Mon, 02 Dec 2024 01:01:08 GMT Connection: close Server: WSO2 Carbon Server
Open service 185.148.162.120:9443
2024-11-30 00:30
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=19AF4E4C216A93FB9CE5750936053755; Path=/; Secure; HttpOnly Location: https://toll.app.viasattech.com:9443/publisher/ Content-Length: 0 Date: Sat, 30 Nov 2024 00:30:53 GMT Connection: close Server: WSO2 Carbon Server
Open service 185.148.162.120:9443
2024-11-28 00:32
HTTP/1.1 302 X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=088B74D605CE7ADCCB0C0A6A88F77DF5; Path=/; Secure; HttpOnly Location: https://toll.app.viasattech.com:9443/publisher/ Content-Length: 0 Date: Thu, 28 Nov 2024 00:32:36 GMT Connection: close Server: WSO2 Carbon Server