cold-fusion-cfcache-map: Discover Cold Fusion cfcache.map Files

日期: 2025-08-01 | 影响软件: cold-fusion-cfcache-map | POC: 已公开

漏洞描述

Adobe Cold Fusion cfcache.map file is exposed.

PoC代码[已公开]

id: cold-fusion-cfcache-map

info:
  name: Discover Cold Fusion cfcache.map Files
  author: geeknik
  severity: low
  description: Adobe Cold Fusion cfcache.map file is exposed.
  reference:
    - https://securiteam.com/windowsntfocus/5bp081f0ac/
  classification:
    cpe: cpe:2.3:a:adobe:coldfusion:*:*:*:*:*:*:*:*
  metadata:
    max-request: 1
    vendor: adobe
    product: coldfusion
    shodan-query: http.component:"Adobe ColdFusion"
  tags: exposure,coldfusion,adobe,files,vuln

http:
  - method: GET
    path:
      - "{{BaseURL}}/cfcache.map"

    matchers-condition: and
    matchers:
      - type: word
        words:
          - "Mapping="
          - "SourceTimeStamp="
        condition: and

      - type: status
        status:
          - 200
# digest: 4a0a00473045022100e40ed9ceac190a4d076de7a840837ca429769429c0c07f8191e6802b786d3bde0220424bf81c44493a2efc706218600ff320243e6bc7e7699594fef820ced7d464c4:922c64590222798bb761d5b6d8e72950