Exposed GoAnywhere MFT are subject to an unfixed 0day RCE and should be considered unsafe when made public.
Severity: critical
Fingerprint: b1a07937af044f4619de6baab5894bf3b5894bf3b5894bf3b5894bf3b5894bf3
Found vulnerable GoAnywhere MFT: Affected by CVE-2023-0669
Fingerprint: b1a07937b9045eb39aa85ab5375b78116772d68630a355155ef9d76019dae468
HTTP/1.1 302 Found Server: Apache-Coyote/1.1 Set-Cookie: RSESSIONID=F9BB04C7DD569D3F8A226737A1BD8647; Path=/; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Tue, 31 Jan 2023 21:23:44 GMT Connection: close
Fingerprint: b1a07937a2043ad77ce9e52be7a25b677709c0c2fa3358c96e49feb96f48decd
Server: Apache-Coyote/1.1 Set-Cookie: RSESSIONID=9B2F897A7E49DAB1EA2C8B3A986CE304; Path=/; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Sat, 21 Jan 2023 08:30:24 GMT Connection: close