5.17 Enable 'DROP ANY PROCEDURE' Audit Option

Information

Dropping procedures of another user could be part of an privilege escalation exploit and should be audited.

Solution

Execute the following SQL statement to remediate this setting. AUDIT DROP ANY PROCEDURE;

See Also

https://workbench.cisecurity.org/files/601

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-12c.

Plugin: OracleDB

Control ID: 0d0f563a758220012597412de8dd1848e9d8d67fff7e6225868d6461234ae8aa