CVE-2025-58740
EUVD-2025-20631120.01.2026, 22:15
The use of a hard-coded encryption key in calls to the Password function in C2SGlobalSettings.dll in Milner ImageDirector Capture on Windows allows a local attacker to decrypt database credentials by reading the cryptographic key from the executable. This issue affects ImageDirector Capture: from 7.0.9 before 7.6.3.25808.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| milner | imagedirector_capture | 7.0.9 ≤ 𝑥 < 7.6.3.25808 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References