Exposed GoAnywhere MFT are subject to an unfixed 0day RCE and should be considered unsafe when made public.
Severity: critical
Fingerprint: b1a07937af044f4619de6baab5894bf3b5894bf3b5894bf3b5894bf3b5894bf3
Found vulnerable GoAnywhere MFT: Affected by CVE-2023-0669
Fingerprint: b1a07937b9045eb34a1c93d79f2f514c1d361e13c62e3d564c06195ca754383e
HTTP/1.1 302 Set-Cookie: RSESSIONID=2BDBEAADE36C643AB9A467BC26C5BE86; Path=/; Secure; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Wed, 01 Feb 2023 13:37:33 GMT Connection: close
Fingerprint: b1a07937a2043ad75071c78b457f617eba54adc5ee0d722db44bdd49b44bdd49
Set-Cookie: RSESSIONID=EF32749E74880AA04A0231DFEB00043A; Path=/; Secure; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Wed, 11 Jan 2023 21:59:54 GMT Connection: close
Fingerprint: b1a07937a2043ad7ab8388cc1c3f8493441490d6fa9d2bdcda2d37beda2d37be
Set-Cookie: RSESSIONID=70252DD809335CE419C3F8C19793E798; Path=/; Secure; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Thu, 22 Dec 2022 00:55:18 GMT Connection: close
Fingerprint: b1a07937a2043ad788f069d1d2fcd73c2425c72b5a861e6b2bbae9b72bbae9b7
Set-Cookie: RSESSIONID=B00FC100D2CF77D503E77FD993BFD793; Path=/; Secure; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Mon, 12 Dec 2022 02:30:34 GMT Connection: close
Fingerprint: b1a07937a2043ad7018cecfaa04f8bf15534719c13a6559282cde1f482cde1f4
Set-Cookie: RSESSIONID=E3DA4E024DDC3605EFD2FC06449E50A2; Path=/; Secure; HttpOnly Location: /goanywhere Content-Type: text/html;charset=UTF-8 Content-Length: 0 Date: Thu, 24 Nov 2022 01:02:46 GMT Connection: close