Ultra VNC-3DES-is it secure



hi hackers,
I am doing a VA/PT for one our client and found one of the servers is using Ultra VNC. The ports (5800 & 5900) are open to Internet. Is it secure against Man in the middle attack?
Do I need to report this as a CRITICAL/HIGH security issue..

Thanks & Rgds.
P.T.


------------------------------------------------------------------------
This list is sponsored by: Cenzic

Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!

http://www.cenzic.com/downloads
------------------------------------------------------------------------



Relevant Pages

  • FTP
    ... I usualy permit TCP traffic on ports from 1025 to 65535 of the servers ... Is there a more secure way to permit FTP access instead of to ...
    (FreeBSD-Security)
  • Re: newbie with www user security problem
    ... The box is secure that much i have found out. ... everyone passwords on the box. ... i am in the process of upgrading the ports now and there are problems ... page and more customization. ...
    (FreeBSD-Security)
  • Re: Election Poll
    ... against a nuclear attack or a "dirty bomb". ... There is NO way to secure our ports from said attacks or bombs. ...
    (alt.machines.cnc)
  • Re: How the #$%& can it be possible!
    ... They should have had secured servers and controlled all the log ins and any ... who is doing what no matter how "secure" your servers are. ... some incredibly HUGE factor the tune changes, doesn't it weasel? ... My business with them is privacy, ...
    (alt.privacy)
  • Re: Securing Communication Between Domain Members and their Domain Controllers
    ... look into using an ipsec tunnel into a gateway computer or ipsec endpoint device or ... > located stand alone servers. ... > integrte them into a single secure Active Directory Domain. ... > member servers to communicate this way, looking through the MS tech. support ...
    (microsoft.public.win2000.security)