CVE-2014-5345 | Disqus Comment System up to 2.39 upgrade.php step cross site scripting (Comment 127847 / EDB-34336)
A vulnerability was found in Disqus Comment System up to 2.39. It has been declared as problematic. This vulnerability affects unknown code of the file upgrade.php. The manipulation of the argument step leads to cross site scripting.
This vulnerability was named CVE-2014-5345. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.