The following WSO2 product is publicly accessible and looks out-dated :
It is critical to update to a safe version as soon as possible since a vulnerability allow remote attackers to achieve RCE (Remote code execution) on the service. Those vulnerabilities are currently used in ransomware campaign and could damage your network.
Reference:
Severity: critical
Fingerprint: 0ac2efb9e7a4e4a89a803d6200fae19000fae19000fae19000fae19000fae190
Found WSO2 product: Vulnerable to CVE-2022-29464
WARNING: This plugin will generate false positive and is purely informative:
regreSSHion: RCE in OpenSSH's server, on glibc-based Linux systems (CVE-2024-6387)
Severity: info
Fingerprint: 3f43e0ebb5dce37ab8b59eb52209347f258fe1ba258fe1ba258fe1ba258fe1ba
Found potentially vulnerable SSH version: SSH-2.0-OpenSSH_9.6 WARNING, RISK IS ESTIMATED FALSE POSITIVE ARE LIKELY
Open service 34.124.254.20:9443
2024-12-22 00:41
HTTP/1.1 302 Found X-Frame-Options: DENY X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=873780185DC81C6605ECD4422F6D95AC; Path=/; Secure; HttpOnly Location: https://34.124.254.20/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Sun, 22 Dec 2024 00:41:17 GMT Connection: close Server: WSO2 Carbon Server
Open service 34.124.254.20:9443
2024-12-19 23:22
HTTP/1.1 302 Found X-Frame-Options: DENY X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=63B50DCA3D6ED99715488F4B077EBA1C; Path=/; Secure; HttpOnly Location: https://34.124.254.20/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Thu, 19 Dec 2024 23:23:00 GMT Connection: close Server: WSO2 Carbon Server
Open service 34.124.254.20:9443
2024-12-18 00:09
HTTP/1.1 302 Found X-Frame-Options: DENY X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=0E10249723F6DE6DC7E39B46711DF0D5; Path=/; Secure; HttpOnly Location: https://34.124.254.20/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Wed, 18 Dec 2024 00:09:37 GMT Connection: close Server: WSO2 Carbon Server
Open service 34.124.254.20:9443
2024-12-15 22:07
HTTP/1.1 302 Found X-Frame-Options: DENY X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=435C9E563AC943B761D5DB35AE7FA497; Path=/; Secure; HttpOnly Location: https://34.124.254.20/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Sun, 15 Dec 2024 22:07:25 GMT Connection: close Server: WSO2 Carbon Server
Open service 34.124.254.20:9443
2024-12-13 21:34
HTTP/1.1 302 Found X-Frame-Options: DENY X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=F748DFE0038C6C9DAA2789A694F4F380; Path=/; Secure; HttpOnly Location: https://34.124.254.20/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Fri, 13 Dec 2024 21:34:24 GMT Connection: close Server: WSO2 Carbon Server
Open service 34.124.254.20:9443
2024-12-12 00:25
HTTP/1.1 302 Found X-Frame-Options: DENY X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=ED2CCBAB1F0EBD920C001419BDBFB160; Path=/; Secure; HttpOnly Location: https://34.124.254.20/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Thu, 12 Dec 2024 00:25:09 GMT Connection: close Server: WSO2 Carbon Server
Open service 34.124.254.20:9443
2024-12-02 00:59
HTTP/1.1 302 Found X-Frame-Options: DENY X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=BAA1131E262A4FF69517C797E3535DAD; Path=/; Secure; HttpOnly Location: https://34.124.254.20/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Mon, 02 Dec 2024 00:59:10 GMT Connection: close Server: WSO2 Carbon Server
Open service 34.124.254.20:9443
2024-11-30 00:36
HTTP/1.1 302 Found X-Frame-Options: DENY X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=04E816CAC5847CF9C50FE09D1FC9B483; Path=/; Secure; HttpOnly Location: https://34.124.254.20/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Sat, 30 Nov 2024 00:36:43 GMT Connection: close Server: WSO2 Carbon Server
Open service 34.124.254.20:9443
2024-11-28 00:23
HTTP/1.1 302 Found X-Frame-Options: DENY X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Set-Cookie: JSESSIONID=87588C6A3F17C5DD176AA3113F858E87; Path=/; Secure; HttpOnly Location: https://34.124.254.20/carbon Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Thu, 28 Nov 2024 00:23:14 GMT Connection: close Server: WSO2 Carbon Server