STIGQter STIGQter: STIG Summary: Adobe ColdFusion Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 01 Jul 2026:

ColdFusion must be using an enterprise solution for authentication.

DISA Rule

SV-279055r1171527_rule

Vulnerability Number

V-279055

Group Title

SRG-APP-000149-AS-000102

Rule Version

APAS-CF-000310

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Configure LDAP.

1. From the Admin Console Landing Screen, navigate to Security >> Administrator >> External Authentication" tab.

2. Configure LDAP:
- Select "LDAP" option.
- Click "Edit LDAP Configuration".
- Enter LDAP Details.
- Click "SAVE".

3. If connection is verified, click "Submit Changes".

Check Contents

Verify LDAP is in use.

From the Admin Console Landing Screen, navigate to Security >> Administrator.

If "External Authentication" is set to "NONE", this is a finding.

Vulnerability Number

V-279055

Documentable

False

Rule Version

APAS-CF-000310

Severity Override Guidance

Verify LDAP is in use.

From the Admin Console Landing Screen, navigate to Security >> Administrator.

If "External Authentication" is set to "NONE", this is a finding.

Check Content Reference

M

Target Key

5724