CVE-2020-13938: Apache HTTP Server

Medium severity, CVSS 5.5. EPSS: 11.9% chance of exploitation in the next 30 days.

Apache HTTP Server versions 2.4.0 to 2.4.46 Unprivileged local users can stop httpd on Windows

Affected products

  • Apache HTTP Server: from 2.4.0, up to and including 2.4.46
  • McAfee Epolicy Orchestrator: before 5.10.0 (fixed in 5.10.0); version 5.10.0 only
  • Netapp Cloud Backup: affected versions not specified

Published 2021-06-10. Last modified 2026-06-17.