STIGQter STIGQter: STIG Summary: Adobe ColdFusion Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 01 Jul 2026:

ColdFusion must limit the in-memory size of the virtual file system.

DISA Rule

SV-279085r1171029_rule

Vulnerability Number

V-279085

Group Title

SRG-APP-000435-AS-000163

Rule Version

APAS-CF-000795

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure Memory Limit settings.

1. From the Admin Console Landing Screen, navigate to Server Settings >> Settings.

2. Set "Memory Limit for In-Memory Virtual File System" to the required amount.

3. Select "Submit Changes".

Check Contents

Verify Memory Limit settings.

1. From the Admin Console Landing Screen, navigate to Server Settings >> Settings.

2. Interview the administrator to determine how much space if needed for the in-memory virtual file system.

If the "Memory Limit for In-Memory Virtual File System" is set to a number larger than required, this is a finding.

Vulnerability Number

V-279085

Documentable

False

Rule Version

APAS-CF-000795

Severity Override Guidance

Verify Memory Limit settings.

1. From the Admin Console Landing Screen, navigate to Server Settings >> Settings.

2. Interview the administrator to determine how much space if needed for the in-memory virtual file system.

If the "Memory Limit for In-Memory Virtual File System" is set to a number larger than required, this is a finding.

Check Content Reference

M

Target Key

5724