STIGQter STIGQter: STIG Summary: Adobe ColdFusion 11 Security Technical Implementation Guide Version: 1 Release: 4 Benchmark Date: 26 Jan 2018:

The ColdFusion Administrator Console must be hosted in a management sandbox.

DISA Rule

SV-76955r1_rule

Vulnerability Number

V-62465

Group Title

SRG-APP-000211-AS-000146

Rule Version

CF11-05-000162

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Navigate to the "Sandbox Security" page under the "Security" menu. Create sandbox for the Administrator Console to operate within and select the "Submit Changes" button.

Check Contents

Within the Administrator Console, navigate to the "Sandbox Security" page under the "Security" menu.

If the Administrator Console is not hosted within a sandbox, this is a finding.

Vulnerability Number

V-62465

Documentable

False

Rule Version

CF11-05-000162

Severity Override Guidance

Within the Administrator Console, navigate to the "Sandbox Security" page under the "Security" menu.

If the Administrator Console is not hosted within a sandbox, this is a finding.

Check Content Reference

M

Target Key

2661

Comments