SV-76849r1_rule
V-62359
SRG-APP-000315-AS-000094
CF11-01-000016
CAT II
10
Navigate to the "Allowed IP Addresses" page under the "Security" menu. Set the list of allowed IP addresses for accessing ColdFusion Administrator to only those IP addresses or subnets that should be capable of reaching the Administrator Console.
Within the Administrator Console, navigate to the "Allowed IP Addresses" page under the "Security" menu.
If the list of allowed IP addresses for accessing the ColdFusion Administrator is blank, is set to "*.*.*.*" or contains IP addresses/subnets that should not have access, this is a finding.
V-62359
False
CF11-01-000016
Within the Administrator Console, navigate to the "Allowed IP Addresses" page under the "Security" menu.
If the list of allowed IP addresses for accessing the ColdFusion Administrator is blank, is set to "*.*.*.*" or contains IP addresses/subnets that should not have access, this is a finding.
M
2661