STIGQter STIGQter: STIG Summary: Adobe ColdFusion Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 01 Jul 2026:

ColdFusion must control remote access to Exposed Services.

DISA Rule

SV-279075r1171564_rule

Vulnerability Number

V-279075

Group Title

SRG-APP-000315-AS-000094

Rule Version

APAS-CF-000585

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Configure Allowed IP Addresses for Exposed Services.

1. From the Admin Console Landing Screen, navigate to Security >> Allowed IP Addresses. Only those IP addresses or subnets that have access to Exposed Services must be listed.

2. Remove any IP addresses that are blank (NULL) or set to a wildcard value.

Check Contents

Verify Allowed IP Addresses for Exposed Services.

1. From the Admin Console Landing Screen, navigate to Security >> Allowed IP Addresses.

2. If there are any entries in the "Allowed IP Addresses for Exposed Services" section, validate with the system administrator (SA) that the IP addresses and subnets specified require access.

If an unauthorized Subnets/IP address or wildcard value is present, this is a finding.

Vulnerability Number

V-279075

Documentable

False

Rule Version

APAS-CF-000585

Severity Override Guidance

Verify Allowed IP Addresses for Exposed Services.

1. From the Admin Console Landing Screen, navigate to Security >> Allowed IP Addresses.

2. If there are any entries in the "Allowed IP Addresses for Exposed Services" section, validate with the system administrator (SA) that the IP addresses and subnets specified require access.

If an unauthorized Subnets/IP address or wildcard value is present, this is a finding.

Check Content Reference

M

Target Key

5724