The server-status page (usually /server-status) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb3145a1cb1945a1cb19d9e2032a
Apache Status Apache Server Status for analytics.rektglobal.com (via 127.0.0.1) Server Version: Apache/2.4.54 () OpenSSL/1.0.2k-fips Server MPM: prefork Server Built: Jun 30 2022 11:02:23 Current Time: Friday, 12-Aug-2022 02:44:50 UTC Restart Time: Friday, 12-Aug-2022 01:46:30 UTC Parent Server Config. Generation: 1 Parent Server MPM Generation: 0 Server uptime: 58 minutes 20 seconds Server load: 0.68 0.43 0.75 Total accesses: 6170 - Total Traffic: 69.8 MB - Total Duration: 4259921 CPU Usage: u258.43 s105.22 cu109.34 cs956.68 - 40.8% CPU load 1.76 requests/sec - 20.4 kB/second - 11.6 kB/request - 690.425 ms/request 2 requests currently being processed, 30 idle workers ___________W_____.____________W__............................... ................................................................ ................................................................ ................................................................ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-01430/175/175_ 47.6443359948450.01.621.62 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 1-01610/156/156_ 46.65263493125610.00.350.35 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 2-01710/276/276_ 52.0223441186670.01.481.48 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 3-01770/267/267_ 42.74323432589790.00.830.83 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 4-01830/227/227_ 47.89383371127950.00.440.44 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 5-01890/181/181_ 47.3556340979850.00.460.46 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 6-01950/162/162_ 47.5047339830430.01.311.31 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 7-02010/206/206_ 48.271201182040.00.440.44 localhosthttp/1.1localhost:80GET /server-status/?auto HTTP/1.1 8-02070/184/184_ 42.7911348742980.00.370.37 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 9-02130/214/214_ 57.92413401655910.029.5229.52 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 10-02190/191/191_ 50.36593571079130.00.420.42 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 11-02250/178/178W 45.6500899650.00.480.48 127.0.0.1http/1.1localhost:80GET / HTTP/1.1 12-02310/190/190_ 48.7101071861540.00.550.55 127.0.0.1http/1.1localhost:80GET / HTTP/1.1 13-02320/153/153_ 47.0314338804150.00.310.31 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 14-02430/219/219_ 53.40173392358640.01.891.89 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 15-02440/201/201_ 45.6342931042040.00.380.38 127.0.0.1http/1.1localhost:80GET /app/fetcher/cron/fetchbyservicepartial/id/251 HTTP/1.1 16-02890/316/316_ 53.9493861437740.00.850.85 127.0.0.1http/1.1localhost:80GET /app/dash/leadRecorder/record_facebook_lead?page_id=1649650 17-0-0/0/131. 0.007990725900.00.000.70 127.0.0.1http/1.1localhost:80OPTIONS * HTTP/1.0 18-06360/189/189_ 42.92293521341450.00.600.60 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 19-07360/298/298_ 47.33503451321940.03.033.03 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 20-07530/179/179_ 64.5953402576150.00.690.69 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 21-07590/221/221_ 45.74353361402020.05.895.89 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 22-014790/150/150_ 40.8053344978630.00.410.41 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 23-049140/183/183_ 40.4629891038860.00.820.82 127.0.0.1http/1.1localhost:80GET /app/dash/instanceManagement/test_uptime HTTP/1.1 24-049200/277/277_ 46.7501051628330.05.255.25 127.0.0.1http/1.1localhost:80GET / HTTP/1.1 25-049260/150/150_ 39.2251005904440.00.440.44 127.0.0.1http/1.1localhost:80GET /server/api/categories/59/data/36?aggregate=true&daterange= 26-049630/169/169_ 43.7023333905090.00.320.32 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 27-058200/186/186_ 39.68401071223760.02.642.64 127.0.0.1http/1.1localhost:80GET /app/dash/instanceManagement/test_uptime HTTP/1.1 28-058260/193/193_ 42.47090901460.00.500.50 127.0.0.1http/1.1localhost:80GET / HTTP/1.1 29-058320/188/188_ 38.3483441447980.06.316.31 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 30-0372270/20/20W 11.4200206900.00.090.09 127.0.0.1http/1.1localhost:80GET /server-status HTTP/1.1 31-0372330/60/60_ 11.715121951743320.00.130.13 127.0.0.1http/1.1localhost:80GET /server/api/categories/65/data/88?aggregate=true&daterange= 32-0372390/80/80_ 14.4420341400270.00.280.28 127.0.0.1http/1.1localhost:80GET /get_version.php HTTP/1.1 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request DurSum of milliseconds required to process all requests ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot SSL/TLS Session Cache Status: cache type: SHMCB, shared memory: 512000 bytes, current entries: 0subcaches: 32, indexes per subcache: 88index usage: 0%, cache usage: 0%total entries stored since starting: 0total entries replaced since starting: 0total entries expired since starting: 0total (pre-expiry) entries scrolled out of the cache: 0total retrieves since starting: 0 hit, 0 misstotal removes since starting: 0 hit, 0 miss