It has been public today, I remember when a I coded a simple blank password scanner targeting realvnc , it had exposed a lot of computers to hackers, but it appear in this application bug you can bypass the password auth enough easly, check here:
http://lists.grok.org.uk/pipermail/full ... 46039.html