Microsoft Remote Desktop Web Access Detected

info Web App Scanning Plugin ID 114573

Synopsis

Microsoft Remote Desktop Web Access Detected

Description

This is an informational plugin to inform the user that the scanner has detected a publicly accessible Microsoft Remote Desktop Web Access instance on the target application.

Solution

If the application is not expected to be public, restrict access using a .htaccess file, limiting access to known IP Addresses.

See Also

https://learn.microsoft.com/en-us/windows-server/remote/remote-desktop-services/clients/remote-desktop-web-client

https://learn.microsoft.com/en-us/windows-server/remote/remote-desktop-services/clients/remote-desktop-web-client-admin

Plugin Details

Severity: Info

ID: 114573

Type: remote

Published: 1/28/2025

Updated: 1/28/2025

Scan Template: basic, full, pci, scan