A short video on configuring the free web application security scanner, Nessus from Tenable security. Nessus also has a PCI DSS plugin. Nessus is a permitted tool under PCI DSS.
This gives a lay man introduction to a simple cross site scripting attack. Under Requirement 6 of PCI DSS, applications should not be vulnerable to cross site scripting attacks.