Terminal Services Encryption Level is Medium or Low

Medium Nessus Plugin ID 57690


The remote host is using weak cryptography.


The remote Terminal Services service is not configured to use strong cryptography.

Using weak cryptography with this service may allow an attacker to eavesdrop on the communications more easily and obtain screenshots and/or keystrokes.


Change RDP encryption level to one of :

3. High

4. FIPS Compliant

Plugin Details

Severity: Medium

ID: 57690

File Name: rdp_weak_crypto.nbin

Version: $Revision: 1.29 $

Type: remote

Family: Misc.

Published: 2012/01/25

Modified: 2018/01/29

Dependencies: 58453

Risk Information

Risk Factor: Medium


Base Score: 4.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Information

CPE: cpe:/o:microsoft:windows