← volver
CVE-2025-58742

Insufficient Configuration Protections Enable Database Credential Interception in Milner ImageDirector Capture

CVSS 8.5 HIGHEPSS 0.2%CWE-522CWE-923
Insufficiently Protected Credentials, Improper Restriction of Communication Channel to Intended Endpoints vulnerability in the Connection Settings dialog in Milner ImageDirector Capture on Windows allows Adversary in the Middle (AiTM) by modifying the 'Server' field to redirect client authentication.This issue affects ImageDirector Capture: from 7.0.9 before 7.6.3.25808.
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:L/VA:H/SC:H/SI:H/SA:H

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →