EIP-2026-114681

PRE-CVE

Invesalius3 - Remote Code Execution

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-114681. PoCs published by Alessio Romano (sfoffo)_ Riccardo Degli Esposti (partywave).

AI-analyzed exploit summary This Python script crafts a malicious DICOM file to exploit CVE-2024-42845, achieving RCE when the file is imported into Invesalius3. It embeds a base64-encoded Python payload into a DICOM tag (0x00200032) and modifies the file to trigger execution.

Description

Invesalius3 - Remote Code Execution

Exploits (1)

exploitdb WORKING POC
by Alessio Romano (sfoffo)_ Riccardo Degli Esposti (partywave) · pythonwebappspython
https://www.exploit-db.com/exploits/52076

This Python script crafts a malicious DICOM file to exploit CVE-2024-42845, achieving RCE when the file is imported into Invesalius3. It embeds a base64-encoded Python payload into a DICOM tag (0x00200032) and modifies the file to trigger execution.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Invesalius3 versions 3.1.99991 to 3.1.99998
No auth needed
Prerequisites: Valid DICOM file as input · Victim must import the crafted DICOM file
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026