STIGQter STIGQter: STIG Summary: Oracle Database 19c Security Technical Implementation Guide Version: 1 Release: 5 Benchmark Date: 01 Apr 2026:

Oracle Database must uniquely identify and authenticate organizational users (or processes acting on behalf of organizational users).

DISA Rule

SV-270560r1065286_rule

Vulnerability Number

V-270560

Group Title

SRG-APP-000148-DB-000103

Rule Version

O19C-00-013800

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the DBMS, OS, and/or enterprise-level authentication/access mechanism to uniquely identify and authenticate all organizational users who log on to the system. Ensure that each user has a separate account from all other users.

Check Contents

Review database management system (DBMS) settings, OS settings, and/or enterprise-level authentication/access mechanism settings, and site practices, to determine whether organizational users are uniquely identified and authenticated when logging on to the system.

If organizational users are not uniquely identified and authenticated, this is a finding.

Vulnerability Number

V-270560

Documentable

False

Rule Version

O19C-00-013800

Severity Override Guidance

Review database management system (DBMS) settings, OS settings, and/or enterprise-level authentication/access mechanism settings, and site practices, to determine whether organizational users are uniquely identified and authenticated when logging on to the system.

If organizational users are not uniquely identified and authenticated, this is a finding.

Check Content Reference

M

Target Key

5672