Details
Alert Id 10048
Alert Type Active Scan Rule
Status beta
Risk High
CWE 78
WASC 31

Summary

The server is running a version of the Bash shell that allows remote attackers to execute arbitrary code

Solution

Update Bash on the server to the latest version

References

Code

org/zaproxy/zap/extension/ascanrulesBeta/ShellShockScanRule.java