Exposed GoAnywhere MFT are subject to an unfixed 0day RCE and should be considered unsafe when made public.
Severity: critical
Fingerprint: b1a07937af044f4619de6baab5894bf3b5894bf3b5894bf3b5894bf3b5894bf3
Found vulnerable GoAnywhere MFT: Affected by CVE-2023-0669
Fingerprint: b1a07937b9045eb39aa85ab5375b78116779d08b13c9fc7ea5023ec56146d649
HTTP/1.1 302 Found Server: Apache-Coyote/1.1 Set-Cookie: RSESSIONID=5FBE5B9031D91B1C93041ED6CFFC525F; Path=/; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Wed, 01 Feb 2023 10:21:01 GMT Connection: close
Fingerprint: b1a07937a2043ad77ce9e52b00a75f2adfeb11a18ecd892c8d28d4e2ebd07f04
Server: Apache-Coyote/1.1 Set-Cookie: RSESSIONID=DE595E18EB8F3D8B8B72FAAE684C2A7D; Path=/; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Sun, 08 Jan 2023 03:39:07 GMT Connection: close
Fingerprint: b1a07937a2043ad77ce9e52b7182874c56dec013593aa35621d32b5c91a90e3e
Server: Apache-Coyote/1.1 Set-Cookie: RSESSIONID=154D9B1B09CD44F8CD17C8788F01C20B; Path=/; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Fri, 06 Jan 2023 07:01:58 GMT Connection: close
Fingerprint: b1a07937a2043ad77ce9e52bf76055eae69225e1a755296cd4c50d22acc2d344
Server: Apache-Coyote/1.1 Set-Cookie: RSESSIONID=7769084D3F655022DE4B55B22E8A6B39; Path=/; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Sun, 18 Dec 2022 00:05:42 GMT Connection: close
Fingerprint: b1a07937a2043ad77ce9e52b3408d42e03f1157d36134ad827f6c8c66e466dd0
Server: Apache-Coyote/1.1 Set-Cookie: RSESSIONID=4FB68344AF49BB1052E8B6E2FD32B72F; Path=/; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Tue, 13 Dec 2022 08:09:42 GMT Connection: close
Fingerprint: b1a07937a2043ad77ce9e52bdc909b521b0426e9521f87249271388ad81b446c
Server: Apache-Coyote/1.1 Set-Cookie: RSESSIONID=38DDC0AA2D3E99C9290EA17131668267; Path=/; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Sun, 27 Nov 2022 18:02:58 GMT Connection: close
Fingerprint: b1a07937a2043ad77ce9e52b8aa080a51a2aa83892d85ce71949c20ffbcc13a3
Server: Apache-Coyote/1.1 Set-Cookie: RSESSIONID=477476AF060E2ACA167C604BFB94A6A4; Path=/; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Thu, 24 Nov 2022 03:31:44 GMT Connection: close
Exposed GoAnywhere MFT are subject to an unfixed 0day RCE and should be considered unsafe when made public.
Severity: critical
Fingerprint: b1a07937af044f4619de6baab5894bf3b5894bf3b5894bf3b5894bf3b5894bf3
Found vulnerable GoAnywhere MFT: Affected by CVE-2023-0669
Fingerprint: b1a07937b9045eb39aa85ab5375b781190b2afa12396080cc5e1819bd4408aa7
HTTP/1.1 302 Found Server: Apache-Coyote/1.1 Set-Cookie: RSESSIONID=EF1768157209368D47B0B074E0BFEFB4; Path=/; Secure; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Sat, 04 Feb 2023 03:01:58 GMT Connection: close
Fingerprint: b1a07937a2043ad77ce9e52b704c57155b59f7685495667762eb2c5fbf92c9b3
Server: Apache-Coyote/1.1 Set-Cookie: RSESSIONID=25ECDEC40486C7395EA9B8041FDB1500; Path=/; Secure; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Sat, 14 Jan 2023 14:39:32 GMT Connection: close
Fingerprint: b1a07937a2043ad77ce9e52b3e7189d6067750a50bb680d064eb1c2e8b9f8798
Server: Apache-Coyote/1.1 Set-Cookie: RSESSIONID=1127CD84BDC88FE92561A68E59275136; Path=/; Secure; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Sat, 17 Dec 2022 06:09:42 GMT Connection: close