The following WSO2 product is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible since a vulnerability allow remote attackers to achieve RCE (Remote code execution) on the service. Those vulnerabilities are currently used in ransomware campaign and could damage your network.
Reference:
Severity: critical
Fingerprint: 0ac2efb9e7a4e4a89a803d6200fae19000fae19000fae19000fae19000fae190
Found WSO2 product: Vulnerable to CVE-2022-29464
Open service 192.148.223.109:443
2024-12-21 23:34
HTTP/1.1 302 Found Strict-Transport-Security: max-age=15768000;includeSubDomains X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=9665DA7EB76FF1F7CE40E1BE534884C9; Path=/; Secure; HttpOnly Location: https://192.148.223.109/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Sat, 21 Dec 2024 23:34:39 GMT Connection: close Server: WSO2 Carbon Server
Open service 192.148.223.109:443
2024-12-19 23:22
HTTP/1.1 302 Found Strict-Transport-Security: max-age=15768000;includeSubDomains X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=D53FA2BB3E7B770C0B4F495F27229399; Path=/; Secure; HttpOnly Location: https://192.148.223.109/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Thu, 19 Dec 2024 23:22:02 GMT Connection: close Server: WSO2 Carbon Server
Open service 192.148.223.109:443
2024-12-18 00:10
HTTP/1.1 302 Found Strict-Transport-Security: max-age=15768000;includeSubDomains X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=DB09EC19030D2906C7445B4C17944060; Path=/; Secure; HttpOnly Location: https://192.148.223.109/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Wed, 18 Dec 2024 00:10:19 GMT Connection: close Server: WSO2 Carbon Server
Open service 192.148.223.109:443
2024-12-15 22:06
HTTP/1.1 302 Found Strict-Transport-Security: max-age=15768000;includeSubDomains X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=45C7291D01B0AF8192FC3AF4AD1E3EDB; Path=/; Secure; HttpOnly Location: https://192.148.223.109/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Sun, 15 Dec 2024 22:06:48 GMT Connection: close Server: WSO2 Carbon Server
Open service 192.148.223.109:443
2024-12-13 21:34
HTTP/1.1 302 Found Strict-Transport-Security: max-age=15768000;includeSubDomains X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=DC0CAFEC2A1F43950E993E0E4A244E28; Path=/; Secure; HttpOnly Location: https://192.148.223.109/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Fri, 13 Dec 2024 21:34:48 GMT Connection: close Server: WSO2 Carbon Server
Open service 192.148.223.109:443
2024-12-12 00:24
HTTP/1.1 302 Found Strict-Transport-Security: max-age=15768000;includeSubDomains X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=BFE67A569A00E241FE4AA25E5F7F5E7B; Path=/; Secure; HttpOnly Location: https://192.148.223.109/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Thu, 12 Dec 2024 00:24:55 GMT Connection: close Server: WSO2 Carbon Server
Open service 192.148.223.109:443
2024-12-02 01:02
HTTP/1.1 302 Found Strict-Transport-Security: max-age=15768000;includeSubDomains X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=6675D6256495DA49E3922026173D6EC4; Path=/; Secure; HttpOnly Location: https://192.148.223.109/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Mon, 02 Dec 2024 01:02:39 GMT Connection: close Server: WSO2 Carbon Server
Open service 192.148.223.109:443
2024-11-29 23:46
HTTP/1.1 302 Found Strict-Transport-Security: max-age=15768000;includeSubDomains X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=DE295BF795BCBAD5BD1468E02A97BB41; Path=/; Secure; HttpOnly Location: https://192.148.223.109/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Fri, 29 Nov 2024 23:46:36 GMT Connection: close Server: WSO2 Carbon Server
Open service 192.148.223.109:443
2024-11-27 23:38
HTTP/1.1 302 Found Strict-Transport-Security: max-age=15768000;includeSubDomains X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=4ADF3114A52021CA80AC0ABFCC8C86E6; Path=/; Secure; HttpOnly Location: https://192.148.223.109/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Wed, 27 Nov 2024 23:38:14 GMT Connection: close Server: WSO2 Carbon Server