GEN:SID 1:928
Message WEB-COLDFUSION exampleapp access
Summary This event is generated when an attempt is made to exploit a known
vulnerability in a ColdFusion web server.
Impact Information gathering and system integrity compromise. Possible unauthorized
administrative access to the server or application. Possible execution
of arbitrary code of the attackers choosing in some cases. Denial of
Service is possible.
Detailed Information This event is generated when an attempt is made to compromise a host
running Coldfusion. Many known vulnerabilities exist for this platform and
the attack scenarios are legion.
Affected Systems All systems running ColdFusion
Attack Scenarios Many attack vectors are possible from simple directory traversal to
exploitation of buffer overflow conditions.
Ease of Attack Simple. Many exploits exist.
Corrective Action Ensure the system is using an up to date version of the software and has
had all vendor supplied patches applied.
Additional References