Exposed GoAnywhere MFT are subject to an unfixed 0day RCE and should be considered unsafe when made public.
Severity: critical
Fingerprint: b1a07937af044f4619de6baafb4635b9fb4635b9fb4635b9fb4635b9fb4635b9
Found vulnerable GoAnywhere MFT: Affected by CVE-2024-0204
Severity: critical
Fingerprint: b1a07937af044f4619de6baab5894bf3b5894bf3b5894bf3b5894bf3b5894bf3
Found vulnerable GoAnywhere MFT: Affected by CVE-2023-0669
Fingerprint: b1a07937ad044c62a9ead429b2870d19d51f02edf3880beaeebadd198900d519
Date: Mon, 19 Dec 2022 18:39:46 GMT Content-Type: text/html;charset=UTF-8 Content-Length: 0 Connection: close Set-Cookie: AWSALBTG=FzULxge4+U6I3zqHsKZF/9dFK09HJem1aKk7RgU3keUuA1RWq35U0YdtHkAOGbGVaxlGuSkYUCAWAMdu40r1o0x1FvCvyCZzxoAMsR7ISsMQ12EJbfC0iNA+djtx7XYyynbHGprkiuU1R/2UY/OIy5EsesBFOZL1+HyHSO34tUac1psP/Xs=; Expires=Mon, 26 Dec 2022 18:39:46 GMT; Path=/ Set-Cookie: AWSALBTGCORS=FzULxge4+U6I3zqHsKZF/9dFK09HJem1aKk7RgU3keUuA1RWq35U0YdtHkAOGbGVaxlGuSkYUCAWAMdu40r1o0x1FvCvyCZzxoAMsR7ISsMQ12EJbfC0iNA+djtx7XYyynbHGprkiuU1R/2UY/OIy5EsesBFOZL1+HyHSO34tUac1psP/Xs=; Expires=Mon, 26 Dec 2022 18:39:46 GMT; Path=/; SameSite=None; Secure Set-Cookie: AWSALB=OMch67pb6PVihQF7glxwqm6tbH+SYxziBZOXrLfwYjwRn/U9sqh2epRo5dPt+XpiSiCuMRoLNOIB8owT73Y4yRu8q8hNrpn/1zaPfIdjV1oqDTyLLN7Mjb4E+P78; Expires=Mon, 26 Dec 2022 18:39:46 GMT; Path=/ Set-Cookie: AWSALBCORS=OMch67pb6PVihQF7glxwqm6tbH+SYxziBZOXrLfwYjwRn/U9sqh2epRo5dPt+XpiSiCuMRoLNOIB8owT73Y4yRu8q8hNrpn/1zaPfIdjV1oqDTyLLN7Mjb4E+P78; Expires=Mon, 26 Dec 2022 18:39:46 GMT; Path=/; SameSite=None; Secure Set-Cookie: AWSALB=PyykXaJgewP81dpSTjUYmpKi/imgHNYY1Xz6s5chC7UXJnNKg/USOcF+NL4n3qh8ohr7zgDSNDhACk5ljvPoGLgzY5t5J+Sf3OPITZkLe265dPCEwNvYtvCnEY4p; Expires=Mon, 26 Dec 2022 18:39:46 GMT; Path=/ Set-Cookie: AWSALBCORS=PyykXaJgewP81dpSTjUYmpKi/imgHNYY1Xz6s5chC7UXJnNKg/USOcF+NL4n3qh8ohr7zgDSNDhACk5ljvPoGLgzY5t5J+Sf3OPITZkLe265dPCEwNvYtvCnEY4p; Expires=Mon, 26 Dec 2022 18:39:46 GMT; Path=/; SameSite=None; Secure Set-Cookie: RSESSIONID=D3D11534729CE4DA19C54AAA71F54FDE; Path=/; Secure; HttpOnly Location: /goanywhere
Fingerprint: b1a07937ad044c62a9ead429b2870d19d51f02ed13a339cf24cb75a92ef723f4
Date: Thu, 08 Dec 2022 11:56:11 GMT Content-Type: text/html;charset=UTF-8 Content-Length: 0 Connection: close Set-Cookie: AWSALBTG=8Eb7UP5OQdkpKtdKqJS3ggYvy9OA0Q7D+ndqqig1db3C3OXDdV7Wr7ovEcYAwFN6PfervDUjd/wrkngU5D5ALKBkC9rXH7S2oSikBwAOC2x60vhyKNjrAmnwbCIveKInBdCfyBd0YmjlDDjjpAJygmPoXQX4erUlAsOcAkXDBIwbnryGv3A=; Expires=Thu, 15 Dec 2022 11:56:11 GMT; Path=/ Set-Cookie: AWSALBTGCORS=8Eb7UP5OQdkpKtdKqJS3ggYvy9OA0Q7D+ndqqig1db3C3OXDdV7Wr7ovEcYAwFN6PfervDUjd/wrkngU5D5ALKBkC9rXH7S2oSikBwAOC2x60vhyKNjrAmnwbCIveKInBdCfyBd0YmjlDDjjpAJygmPoXQX4erUlAsOcAkXDBIwbnryGv3A=; Expires=Thu, 15 Dec 2022 11:56:11 GMT; Path=/; SameSite=None; Secure Set-Cookie: AWSALB=7ioMjWPQtKZz+zsTMO8cMdRqZEQRGum37o9Q+7HHt8pbPu2b9Hjgg9qJyJXdbhqAtvBfMIDtp/6JpSmR27spwcc+nubELy20g7JcEQZzxIgVq+W7U4um3cvEiJam; Expires=Thu, 15 Dec 2022 11:56:11 GMT; Path=/ Set-Cookie: AWSALBCORS=7ioMjWPQtKZz+zsTMO8cMdRqZEQRGum37o9Q+7HHt8pbPu2b9Hjgg9qJyJXdbhqAtvBfMIDtp/6JpSmR27spwcc+nubELy20g7JcEQZzxIgVq+W7U4um3cvEiJam; Expires=Thu, 15 Dec 2022 11:56:11 GMT; Path=/; SameSite=None; Secure Set-Cookie: AWSALB=9GTaGO4NZkktEnLqCzE1V5z7T/YMgLJqX36npVxEhI5RB1VQELS7mDWs8oxJ8EarqDuaUmeavmGz+cK37Kc0soyB2hhbi6BK6wBgOeVNkpbRJv4Ql2YLwhdaIXjJ; Expires=Thu, 15 Dec 2022 11:56:11 GMT; Path=/ Set-Cookie: AWSALBCORS=9GTaGO4NZkktEnLqCzE1V5z7T/YMgLJqX36npVxEhI5RB1VQELS7mDWs8oxJ8EarqDuaUmeavmGz+cK37Kc0soyB2hhbi6BK6wBgOeVNkpbRJv4Ql2YLwhdaIXjJ; Expires=Thu, 15 Dec 2022 11:56:11 GMT; Path=/; SameSite=None; Secure Set-Cookie: RSESSIONID=81D923EF0F85055D808A24BDFDBDDD99; Path=/; Secure; HttpOnly Location: /goanywhere
Fingerprint: b1a07937ad044c62a9ead429b2870d19d51f02ed13b8733f91341f914c6a0e90
Date: Thu, 08 Dec 2022 00:37:09 GMT Content-Type: text/html;charset=UTF-8 Content-Length: 0 Connection: close Set-Cookie: AWSALBTG=y8ONhlTx9XQ+6HCtQ215kv9dgAUDeqWE8H9CrKiP7Krolj2W9gq1TO4fI+w2pzw+RsYMUtVHfRKVpUyPrHixTgukVGoprofzQ/Rl51xQEeKjvP2CkoF0ueivmcGu43bdkUtfhP+mHTf10MjS8Ep9Lw37rPitoNxCpdW5osVO+stcDnKkpZ8=; Expires=Thu, 15 Dec 2022 00:37:09 GMT; Path=/ Set-Cookie: AWSALBTGCORS=y8ONhlTx9XQ+6HCtQ215kv9dgAUDeqWE8H9CrKiP7Krolj2W9gq1TO4fI+w2pzw+RsYMUtVHfRKVpUyPrHixTgukVGoprofzQ/Rl51xQEeKjvP2CkoF0ueivmcGu43bdkUtfhP+mHTf10MjS8Ep9Lw37rPitoNxCpdW5osVO+stcDnKkpZ8=; Expires=Thu, 15 Dec 2022 00:37:09 GMT; Path=/; SameSite=None; Secure Set-Cookie: AWSALB=bJoXf1fecYfAWwZmWzTWVuxXhzBKT5fvgndPGcKHo9P2u9wbxP/ejAL1rjiklKeMqtoTgSUZ6i39I8YjIuzNX2sZJ53vnLWNRJ4cjx2e+Ll2MKwXHVL5o57a/qPn; Expires=Thu, 15 Dec 2022 00:37:09 GMT; Path=/ Set-Cookie: AWSALBCORS=bJoXf1fecYfAWwZmWzTWVuxXhzBKT5fvgndPGcKHo9P2u9wbxP/ejAL1rjiklKeMqtoTgSUZ6i39I8YjIuzNX2sZJ53vnLWNRJ4cjx2e+Ll2MKwXHVL5o57a/qPn; Expires=Thu, 15 Dec 2022 00:37:09 GMT; Path=/; SameSite=None; Secure Set-Cookie: AWSALB=MPwtcyxaQDfcM+/2chk5UtfA8j8HigoDoGeubaLVervICZkh7YDD5tQcqUZgUrz+Vh0FambMDbfmhNr/cDYfVADj5D6Ak9m5UEFv7jkwCGwszR5o5eKuKT2SeB2F; Expires=Thu, 15 Dec 2022 00:37:09 GMT; Path=/ Set-Cookie: AWSALBCORS=MPwtcyxaQDfcM+/2chk5UtfA8j8HigoDoGeubaLVervICZkh7YDD5tQcqUZgUrz+Vh0FambMDbfmhNr/cDYfVADj5D6Ak9m5UEFv7jkwCGwszR5o5eKuKT2SeB2F; Expires=Thu, 15 Dec 2022 00:37:09 GMT; Path=/; SameSite=None; Secure Set-Cookie: RSESSIONID=666A7A68DF2ADD97CC79E3A002F4EDC5; Path=/; Secure; HttpOnly Location: /goanywhere
Open service 3.109.30.182:8443
2024-12-17 18:26
HTTP/1.1 302 Date: Tue, 17 Dec 2024 18:26:55 GMT Content-Type: text/html;charset=UTF-8 Content-Length: 0 Connection: close Set-Cookie: AWSALBTG=GQvJc4jQUHic3NVREfBnQVqqpqJ2YdZqYRuHLUIDxW8vvUtQq59simytZCMCl6bWiD9FfObpACQbbuY3Z07/4KzzWlf6MLz0wnX5hUc4n0bkaqK94qPYj4JxSrLtvCD/UnS1IgwoesThNajnLavMxnEXRmnI4hfiUb4IFzCV2gNhvQgR5hg=; Expires=Tue, 24 Dec 2024 18:26:55 GMT; Path=/ Set-Cookie: AWSALBTGCORS=GQvJc4jQUHic3NVREfBnQVqqpqJ2YdZqYRuHLUIDxW8vvUtQq59simytZCMCl6bWiD9FfObpACQbbuY3Z07/4KzzWlf6MLz0wnX5hUc4n0bkaqK94qPYj4JxSrLtvCD/UnS1IgwoesThNajnLavMxnEXRmnI4hfiUb4IFzCV2gNhvQgR5hg=; Expires=Tue, 24 Dec 2024 18:26:55 GMT; Path=/; SameSite=None; Secure Set-Cookie: AWSALB=iwu8tt+JzxfmIZldrEzF6dnaR/GCMUf/rtN5AyTe4zeIIOWe+jI7TlaphDZoGvKIMHekQcWavFjOFpJ7B0iVU2kW1udKw9nd+9phY7+9csd9h2b2s/AgWjxXl3fm; Expires=Tue, 24 Dec 2024 18:26:55 GMT; Path=/ Set-Cookie: AWSALBCORS=iwu8tt+JzxfmIZldrEzF6dnaR/GCMUf/rtN5AyTe4zeIIOWe+jI7TlaphDZoGvKIMHekQcWavFjOFpJ7B0iVU2kW1udKw9nd+9phY7+9csd9h2b2s/AgWjxXl3fm; Expires=Tue, 24 Dec 2024 18:26:55 GMT; Path=/; SameSite=None; Secure Set-Cookie: JSESSIONID=1E6237E482268D9031EC3B908A3DB74D; Path=/; Secure; HttpOnly X-UA-Compatible: IE=edge Cache-Control: no-cache, no-store, must-revalidate Pragma: no-cache Expires: Thu, 01 Jan 1970 00:00:00 GMT X-FRAME-OPTIONS: SAMEORIGIN X-XSS-Protection: 1; mode=block X-Content-Type-Options: nosniff Content-Security-Policy: default-src 'self' *.goanywhere.com; script-src 'self' 'unsafe-inline' 'unsafe-eval'; style-src 'self' 'unsafe-inline'; img-src * data: blob:; Strict-Transport-Security: max-age=86400; includeSubDomains; preload Location: /webclient/Dashboard.xhtml