Exposed GoAnywhere MFT are subject to an unfixed 0day RCE and should be considered unsafe when made public.
Severity: critical
Fingerprint: b1a07937af044f4619de6baab5894bf3b5894bf3b5894bf3b5894bf3b5894bf3
Found vulnerable GoAnywhere MFT: Affected by CVE-2023-0669
Fingerprint: b1a07937b9045eb39aa85ab5375b78112e19d91d33591a30da9ebd0f903d219b
HTTP/1.1 302 Found Server: Apache-Coyote/1.1 Set-Cookie: RSESSIONID=B9DC177D66A61E0A7FE9ABAC373A2A0D; Path=/; Secure; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Thu, 02 Feb 2023 04:40:04 GMT Connection: close
Fingerprint: b1a07937a2043ad77ce9e52b15b89c906db43baf11dac5a24d02b0f096e2018a
Server: Apache-Coyote/1.1 Set-Cookie: RSESSIONID=5E2324D1DD320471AEF93779E2BEE237; Path=/; Secure; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Sun, 22 Jan 2023 01:30:15 GMT Connection: close
Fingerprint: b1a07937a2043ad77ce9e52bf7ac64f424410d3b581706aea6d0f46407382906
Server: Apache-Coyote/1.1 Set-Cookie: RSESSIONID=1BED0E3B1685D36AA097A7981949EA57; Path=/; Secure; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Thu, 12 Jan 2023 18:17:38 GMT Connection: close
Fingerprint: b1a07937a2043ad77ce9e52b1f1656b47d0fe57bea90a3eeb063ada42c70d546
Server: Apache-Coyote/1.1 Set-Cookie: RSESSIONID=074638DFFD27C31774022628FD372175; Path=/; Secure; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Wed, 14 Dec 2022 23:37:36 GMT Connection: close
Fingerprint: b1a07937a2043ad77ce9e52b95553f3a11e49ab138c41f5c9d3e0152bb92a4b4
Server: Apache-Coyote/1.1 Set-Cookie: RSESSIONID=09D271DD0EB7FEE6D3A4A1D6D8BD2473; Path=/; Secure; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Thu, 08 Dec 2022 14:34:18 GMT Connection: close