I found that Elements Vulnerability Management Authenticated scan (WinRM using HTTP port 5985) found fewer vulnerabilities. There is no information about installed software or patches in the scan result.
If you are using port 5985 (HTTP) for the WInRM configuration in the system scan template, make sure to add the target host into the trusted list on Elements Vulnerability Management Scan Node.
Configuring the WinRM service to use HTTP on individual hosts
Article no: 000018757