[nexpose-users] Bug Report - VNC Null Authentication

Marc Bevand Marc_Bevand at rapid7.com
Mon Jul 26 15:21:17 PDT 2010


Jacky wrote:
>
>
> With the NeXpose community edition with latest update, I recently
> scanned a Fedora Host with real vnc server installed.
> I found the report contains a false positive "RealVNC Null Credential
> Login Permitted Vulnerability (backdoor-realvnc-nullcreds)"

Hi Jacky,

This is strange. I would like to try to reproduce it. What version of RealVNC
are you running on the Fedora host? Can you provide "rpm -q realvnc" or
equivalent?

-mrb


More information about the nexpose-users mailing list