CVE-2020-13938

Improper Handling of Insufficient Privileges

Apache HTTP Server versions 2.4.0 to 2.4.46 Unprivileged local users can stop httpd on Windows


We have discovered 1,227,465 live websites that are affected by CVE-2020-13938.

Test my site




Affected Software

Product  Apache
Category Web Servers
Vulnerable Domains1,227,465 live websites (38.91% of Apache install base)
Vulnerable Versions
  • from 2.4 through 2.4
  • from 2.4.1 through 2.4.1
  • from 2.4.2 through 2.4.2
  • from 2.4.3 through 2.4.3
  • from 2.4.4 through 2.4.4
  • from 2.4.6 through 2.4.6
  • from 2.4.7 through 2.4.7
  • from 2.4.9 through 2.4.9
  • from 2.4.10 through 2.4.10
  • from 2.4.12 through 2.4.12
  • from 2.4.16 through 2.4.16
  • from 2.4.17 through 2.4.17
  • from 2.4.18 through 2.4.18
  • from 2.4.20 through 2.4.20
  • from 2.4.23 through 2.4.23
  • from 2.4.25 through 2.4.25
  • from 2.4.26 through 2.4.26
  • from 2.4.27 through 2.4.27
  • from 2.4.28 through 2.4.28
  • from 2.4.29 through 2.4.29
  • from 2.4.33 through 2.4.33
  • from 2.4.34 through 2.4.34
  • from 2.4.35 through 2.4.35
  • from 2.4.37 through 2.4.37
  • from 2.4.38 through 2.4.38
  • from 2.4.39 through 2.4.39
  • from 2.4.41 through 2.4.41
  • from 2.4.43 through 2.4.43
  • from 2.4.46 through 2.4.46
Vulnerable Versions Count29 versions ( 19.73% of all versions)



Details

  • Published - Jun 10, 2021
  • Updated - Aug 4, 2024

Credits

  • Discovered by Ivan Zhakov

CVE-2020-13938 usage by Country

United States442,129 websites



Germany134,464 websites
France81,021 websites
Russia44,468 websites
Netherlands43,898 websites
Japan43,100 websites
Singapore37,401 websites
Czech Republic32,114 websites
Italy30,843 websites
Poland26,668 websites

CVE-2020-13938 usage by TLD

.com470,458 websites
.de83,690 websites
.org56,367 websites
.net48,436 websites
.ru39,055 websites
.nl33,433 websites
.it31,401 websites
.cz26,794 websites
.fr24,756 websites
.pl24,327 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2020-13938

Top websites that are affected by CVE-2020-13938. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*******.com Singapore***
*************.***.****.****.************.net United States***
*********.*************.se United States***
***********.org United States***
*********.net United States***
********.*********.com Singapore*,***
***.****.us United States*,***
***.*********.com Singapore*,***
*****.*******.com Singapore*,***
******************.com United States*,***
See full domain list

FAQ

A total of 1,227,465 websites have been identified as vulnerable to CVE-2020-13938, discovered through global website indexing conducted by WebTechSurvey.
Apache is susceptible to CVE-2020-13938 vulnerability.
Apache versions before, and including, 2.4.46 are vulnerable to CVE-2020-13938.