Critical severity9.8NVD Advisory· Published Jan 24, 2020· Updated Jun 17, 2026
CVE-2014-1924
CVE-2014-1924
Description
The MARC framework import/export function (admin/import_export_framework.pl) in Koha before 3.8.23, 3.10.x before 3.10.13, 3.12.x before 3.12.10, and 3.14.x before 3.14.3 does not require authentication, which allows remote attackers to conduct SQL injection attacks via unspecified vectors.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Koha/Kohadescription
Patches
Vulnerability mechanics
References
4- bugs.koha-community.org/bugzilla3/show_bug.cginvdExploitIssue TrackingVendor Advisory
- koha-community.org/security-release-february-2014/nvdVendor Advisory
- www.openwall.com/lists/oss-security/2014/02/07/10nvdMailing ListThird Party Advisory
- www.openwall.com/lists/oss-security/2014/02/10/3nvdMailing ListThird Party Advisory
News mentions
0No linked articles in our index yet.