Description

An eval Injection vulnerability in the component invesalius/reader/dicom.py of InVesalius 3.1.99991 through 3.1.99998 allows attackers to execute arbitrary code via loading a crafted DICOM file.

INFO

Published Date :

2024-08-23T00:00:00.000Z

Last Modified :

2026-02-13T16:46:20.371Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2024-42845 vulnerability.

Vendors Products
Invesalius
  • Invesalius

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact