4.2.11 Ensure 'EXECUTE' Is Revoked from 'PUBLIC' on 'WWV_DBMS_SQL'

Information

As use of the WWV_DBMS_SQL package could allow an unauthorized user to run SQL statements as Application Express (APEX) user.

Solution

To remediate this setting execute the following SQL statement. REVOKE EXECUTE ON WWV_DBMS_SQL FROM PUBLIC;

See Also

https://workbench.cisecurity.org/files/601