CVE-2020-13938

Improper Handling of Insufficient Privileges

Apache HTTP Server versions 2.4.0 to 2.4.46 Unprivileged local users can stop httpd on Windows


We have discovered 854,498 live websites that are affected by CVE-2020-13938.

Run a Free Instant Scan




Affected Software

Product  Apache
Category Web Servers
Vulnerable Domains854,498 live websites (32% of Apache install base)
Vulnerable Versions
  • from 2.4 through 2.4
  • from 2.4.1 through 2.4.1
  • from 2.4.2 through 2.4.2
  • from 2.4.3 through 2.4.3
  • from 2.4.4 through 2.4.4
  • from 2.4.6 through 2.4.6
  • from 2.4.7 through 2.4.7
  • from 2.4.9 through 2.4.9
  • from 2.4.10 through 2.4.10
  • from 2.4.12 through 2.4.12
  • from 2.4.16 through 2.4.16
  • from 2.4.17 through 2.4.17
  • from 2.4.18 through 2.4.18
  • from 2.4.20 through 2.4.20
  • from 2.4.23 through 2.4.23
  • from 2.4.25 through 2.4.25
  • from 2.4.26 through 2.4.26
  • from 2.4.27 through 2.4.27
  • from 2.4.28 through 2.4.28
  • from 2.4.29 through 2.4.29
  • from 2.4.33 through 2.4.33
  • from 2.4.34 through 2.4.34
  • from 2.4.35 through 2.4.35
  • from 2.4.37 through 2.4.37
  • from 2.4.38 through 2.4.38
  • from 2.4.39 through 2.4.39
  • from 2.4.41 through 2.4.41
  • from 2.4.43 through 2.4.43
  • from 2.4.46 through 2.4.46
Vulnerable Versions Count29 versions ( 24% of all versions)



Details

  • Published - Jun 10, 2021
  • Updated - Aug 4, 2024

Credits

  • Discovered by Ivan Zhakov

Website Distribution by Country

Number of websites using CVE-2020-13938
United States258,409 websites



Germany80,686 websites
France50,151 websites
Japan39,594 websites
Russia37,202 websites
Italy31,303 websites
Netherlands27,471 websites
Singapore26,445 websites
Canada23,943 websites
Czech Republic23,422 websites

Website Distribution by TLD

Number of websites using CVE-2020-13938
.com323,540 websites
.de49,503 websites
.org38,303 websites
.net33,691 websites
.ru32,460 websites
.it27,583 websites
.nl20,073 websites
.pl19,458 websites
.cz19,195 websites
.jp17,856 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2020-13938

Top websites that are affected by CVE-2020-13938. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*******.com Singapore***
*************.***.****.****.************.net United States***
*********.net United States***
***.****.us United States*,***
***.*********.com Singapore*,***
*****.*******.com Singapore*,***
******************.com United States*,***
****.*********.net GB*,***
****.com United States*,***
********.com United States*,***
See full domain list

FAQ

A total of 854,498 websites have been identified as vulnerable to CVE-2020-13938, based on global website indexing conducted by WebTechSurvey.
The Apache is affected by the CVE-2020-13938 vulnerability.
Apache versions up to and including 2.4.46 are vulnerable to CVE-2020-13938.