VNC Server Unauthenticated Access: Screenshot

High Nessus Plugin ID 66174


The remote VNC server does not require authentication.


The VNC server installed on the remote host allows an attacker to connect to the remote host as no authentication is required to access this service.

It was possible to log into the remote service and take a screenshot.


Disable the 'No Authentication' security type.

Plugin Details

Severity: High

ID: 66174

File Name: vnc_screenshot.nbin

Version: $Revision: 1.23 $

Type: remote

Family: Misc.

Published: 2013/04/22

Modified: 2018/01/29

Dependencies: 19288

Risk Information

Risk Factor: High


Base Score: 7.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P