CVE-2025-58744

Severity CVSS v4.0:
MEDIUM
Type:
CWE-798 Use of Hard-coded Credentials
Publication date:
20/01/2026
Last modified:
10/02/2026

Description

Use of Default Credentials, Hard-coded Credentials vulnerability in C2SGlobalSettings.dll in <br /> <br /> Milner ImageDirector Capture on Windows allows decryption of document archive files using credentials decrypted with hard-coded application encryption key.<br /> <br /> This issue affects ImageDirector Capture: from 7.0.9.0 before 7.6.3.25808.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:milner:imagedirector_capture:*:*:*:*:*:*:*:* 7.0.9 (including) 7.6.3.25808 (excluding)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools