RULE(RULE ID:330772)

Rule General Information
Release Date: 2020-08-24
Rule Name: Adobe ColdFusion CFFILE Upload Action Unrestricted File Upload Vulnerability (CVE-2019-7816)
Severity:
CVE ID:
Rule Protection Details
Description: ColdFusion versions Update 2 and earlier, Update 9 and earlier, and Update 17 and earlier have a file upload restriction bypass vulnerability. Successful exploitation could lead to arbitrary code execution.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Others
Reference: AdobeSecurityBulletins:apsb19-14
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
https://helpx.adobe.com/security/products/coldfusion/apsb19-14.html