RULE(RULE ID:323468)

Rule General Information
Release Date: 2019-10-10
Rule Name: Adobe Coldfusion CFFILE File Upload Vulnerability (CVE-2019-7838)
Severity:
CVE ID:
Rule Protection Details
Description: ColdFusion versions Update 3 and earlier, Update 10 and earlier, and Update 18 and earlier have a file extension blacklist bypass vulnerability. Successful exploitation could lead to arbitrary code execution.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Others
Reference: AdobeSecurityBulletins:apsb19-27
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
https://helpx.adobe.com/security/products/coldfusion/apsb19-27.html