Cross-Application Scripting (XAS) vulnerability in SPI Dynamics WebInspect 5.0.196 allows remote attackers to inject Javascript from one application into another.
https://exchange.xforce.ibmcloud.com/vulnerabilities/21541
http://securitytracker.com/id?1014582
http://secunia.com/advisories/16191