STIGQter STIGQter: STIG Summary: Adobe ColdFusion Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 01 Jul 2026:

ColdFusion must disable the In-Memory File System.

DISA Rule

SV-279053r1171525_rule

Vulnerability Number

V-279053

Group Title

SRG-APP-000141-AS-000095

Rule Version

APAS-CF-000290

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the In-Memory File System setting.

1. From the Admin Console Landing Screen, navigate to Server Settings >> Settings.

2. Uncheck "Enable In-Memory File System".

3. Select "Submit Changes".

Check Contents

Verify the In-Memory File System setting.

From the Admin Console Landing Screen, navigate to Server Settings >> Settings.

If hosted applications are using the in-memory file system, this is not a finding.

If "Enable In-Memory File System" is checked, this is a finding.

Vulnerability Number

V-279053

Documentable

False

Rule Version

APAS-CF-000290

Severity Override Guidance

Verify the In-Memory File System setting.

From the Admin Console Landing Screen, navigate to Server Settings >> Settings.

If hosted applications are using the in-memory file system, this is not a finding.

If "Enable In-Memory File System" is checked, this is a finding.

Check Content Reference

M

Target Key

5724