Insufficiently Protected Credentials, Improper Restriction of Communication Channel to Intended Endpoints vulnerability in the Connection Settings dialog in Milner ImageDirector Capture on Windows allows Adversary in the Middle (AiTM) by modifying the 'Server' field to redirect client authentication.This issue affects ImageDirector Capture: from 7.0.9 before 7.6.3.25808.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://sra.io/advisories |
|
History
Wed, 21 Jan 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Milner
Milner imagedirector Capture |
|
| Vendors & Products |
Milner
Milner imagedirector Capture |
Tue, 20 Jan 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Insufficiently Protected Credentials, Improper Restriction of Communication Channel to Intended Endpoints vulnerability in the Connection Settings dialog in Milner ImageDirector Capture on Windows allows Adversary in the Middle (AiTM) by modifying the 'Server' field to redirect client authentication.This issue affects ImageDirector Capture: from 7.0.9 before 7.6.3.25808. | |
| Title | Insufficient Configuration Protections Enable Database Credential Interception in Milner ImageDirector Capture | |
| Weaknesses | CWE-522 CWE-923 |
|
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: SRA
Published:
Updated: 2026-01-20T21:36:54.171Z
Reserved: 2025-09-04T15:27:48.361Z
Link: CVE-2025-58742
No data.
Status : Received
Published: 2026-01-20T22:15:51.630
Modified: 2026-01-20T22:15:51.630
Link: CVE-2025-58742
No data.
OpenCVE Enrichment
Updated: 2026-01-21T11:18:51Z