VNC Server Unauthenticated Access
High Nessus Plugin ID 26925
SynopsisThe remote VNC server does not require authentication.
DescriptionThe VNC server installed on the remote host allows an attacker to connect to the remote host as no authentication is required to access this service.
** The VNC server sometimes sends the connected user to the XDM login
** screen. Unfortunately, Nessus cannot identify this situation.
** In such a case, it is not possible to go further without valid
** credentials and this alert may be ignored.
SolutionDisable the No Authentication security type.