Adobe ColdFusion is a rapid development platform for building modern web applications. ColdFusion versions Update 3 and earlier, Update 10 and earlier, Update 18 and earlier have a file extension blacklist bypass vulnerability. Successfull exploitation could lead to arbitrary code execution. This rule supports to defend the A6: Vulnerable and Outdated Components of OWASP Top 10 - 2021. Other reference:None