Home

Description

Use of a Broken or Risky Cryptographic Algorithm (DES) vulnerability in the Password class in C2SConnections.dll in Milner ImageDirector Capture on Windows allows Encryption Brute Forcing to obtain database credentials.This issue affects ImageDirector Capture: from 7.0.9.0 before 7.6.3.25808.

PUBLISHED Reserved 2025-09-04 | Published 2026-01-20 | Updated 2026-01-21 | Assigner SRA




HIGH: 7.2CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:L/VA:H/SC:H/SI:H/SA:H

Problem types

CWE-327 Use of a Broken or Risky Cryptographic Algorithm

Product status

Default status
unaffected

7.0.9.0 (semver) before 7.6.3.25808
affected

Credits

Asa Reynolds (SRA) finder

Rick Console (SRA) finder

References

sra.io/advisories third-party-advisory

cve.org (CVE-2025-58743)

nvd.nist.gov (CVE-2025-58743)

Download JSON