Unrated severityNVD Advisory· Published Jan 20, 2026· Updated Jan 21, 2026
Insufficient Configuration Protections Enable Database Credential Interception in Milner ImageDirector Capture
CVE-2025-58742
Description
Insufficiently Protected Credentials, Improper Restriction of Communication Channel to Intended Endpoints vulnerability in the Connection Settings dialog in Milner ImageDirector Capture on Windows allows Adversary in the Middle (AiTM) by modifying the 'Server' field to redirect client authentication.This issue affects ImageDirector Capture: from 7.0.9 before 7.6.3.25808.
Affected products
2- Range: >=7.0.9 <7.6.3.25808
- Milner/ImageDirector Capturev5Range: 7.0.9
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- sra.io/advisoriesmitrethird-party-advisory
News mentions
0No linked articles in our index yet.