The server-status page (usually /server-status) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb31c7190ceac7190cea98c06501
Apache Status Apache Server Status for box104.exaservers.com (via 5.79.87.207) Server Version: Apache/2.4.56 (cPanel) OpenSSL/1.1.1t mod_bwlimited/1.4 Server MPM: prefork Server Built: Mar 13 2023 20:17:55 Current Time: Wednesday, 26-Apr-2023 03:08:46 +03 Restart Time: Wednesday, 26-Apr-2023 02:44:56 +03 Parent Server Config. Generation: 1 Parent Server MPM Generation: 0 Server uptime: 23 minutes 50 seconds Server load: 3.32 2.20 1.59 Total accesses: 8728 - Total Traffic: 510.0 MB - Total Duration: 8912923 CPU Usage: u2.96 s2.73 cu231.65 cs71.3 - 21.6% CPU load 6.1 requests/sec - 365.2 kB/second - 59.8 kB/request - 1021.19 ms/request 37 requests currently being processed, 0 idle workers RWWWWWRRWCWCRCWWWRCKKCWWCRRKWWCC....CC......W...W....K.......... ................................................................ ...................... Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-0449930/44/351R 0.80443832567780.01.9610.84 95.184.42.2http/1.1 1-0594610/3/180W 0.131101663010.00.015.19 5.79.87.207http/1.1khalidalsawat.com:443POST /wp-admin/admin-ajax.php?action=rocket_partial_preload&non 2-0532160/3/245W 0.024102013210.00.0710.19 5.188.210.30http/1.1as-eg.com:443GET /attract-more-attention-sales-and-profits/ HTTP/1.0 3-0494500/30/206W 1.411702520140.01.5125.37 5.79.87.207http/1.1khalidalsawat.com:443GET /tag/%D8%AF%D9%8A%D9%83%D9%88%D8%B1%D8%A7%D8%AA-%D9%85%D9%8 4-0551780/14/285W 0.911001592960.00.3312.84 64.233.172.74http/1.1khalidalsawat.com:80HEAD /feed/ HTTP/1.1 5-0481610/29/291W 1.60002490220.00.6125.16 185.191.171.5http/1.1beta.osloob.com.sa:443GET /qfgusls-351081tetid HTTP/1.1 6-0533360/7/196R 1.535431599590.00.0816.37 92.72.97.96http/1.1 7-0511050/9/280R 0.146311291170.00.3717.94 92.72.97.96http/1.1 8-0431500/8/217W 0.321507330990.00.469.58 5.79.87.207http/1.1khalidalsawat.com:443GET /tag/%D8%AF%D9%8A%D9%83%D9%88%D8%B1%D8%A7%D8%AA-%D8%AC%D8%A 9-0611471/3/321C 0.011121653110.40.0212.46 165.22.74.203http/1.1box104.exaservers.com:80GET /config.json HTTP/1.1 10-0613120/0/280W 0.00102771090.00.0017.08 5.79.87.207http/1.1dasco.sa:443POST /wp-cron.php?doing_wp_cron=1682467725.41036701202392578125 11-0565031/5/243C 0.0455692624270.90.1110.58 49.12.218.210http/1.1aljared.com.sa:80GET /wp-content/updates.php HTTP/1.1 12-0435980/32/212R 0.402411691214430.00.9527.28 90.167.219.242http/1.1 13-0613131/3/236C 0.020216208516.90.0215.20 64.227.126.135http/1.1box104.exaservers.com:443GET /.git/config HTTP/1.1 14-0613280/0/267W 0.00001108980.00.0015.27 64.227.126.135http/1.1box104.exaservers.com:443GET /server-status HTTP/1.1 15-0483420/9/220W 0.506101622560.00.939.99 213.176.26.188http/1.1as-eg.com:443GET /free-advertising-for-your-online-business/blog-image-6/ HT 16-0613290/0/226W 0.0000872330.00.009.18 64.227.126.135http/1.1box104.exaservers.com:443GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 17-0412570/93/287R 2.561968481809250.04.939.11 98.10.103.122http/1.1 18-0448182/47/166C 2.446292127197.81.729.12 162.55.85.226http/1.1nkh5.com:80GET /quran/listen-10-58-17.html HTTP/1.1 19-0533921/7/261K 0.0403123836715.80.1217.54 157.90.182.30http/1.1ghadeer.net:80GET /montada/viewtopic.php?p=402 HTTP/1.1 20-0452391/34/190K 0.83312634910.81.999.09 20.218.125.22http/1.1cairotoptours.com:80GET /wp-content/rindex.php?action=add HTTP/1.1 21-0483461/31/251C 0.881123089310.41.4812.27 165.22.74.203http/1.1box104.exaservers.com:80GET /login.action HTTP/1.1 22-0566900/5/174W 0.021401592390.00.0614.99 5.79.87.207http/1.1khalidalsawat.com:443GET /tag/%D8%AF%D9%8A%D9%83%D9%88%D8%B1%D8%A7%D8%AA-%D8%AE%D8%B 23-0533930/22/178W 0.76102410250.00.256.54 34.82.117.190http/1.1dasco.sa:443GET / HTTP/1.1 24-0533941/9/107C 0.17019315616.90.334.29 64.227.126.135http/1.1box104.exaservers.com:443GET /.env HTTP/1.1 25-0439030/4/158R 0.022616757110.00.097.12 191.247.31.69http/1.1 26-0613300/0/201W 0.00001956420.00.008.35 64.227.126.135http/1.1box104.exaservers.com:443GET /.DS_Store HTTP/1.1 27-0412781/104/150K 3.98017015343867.05.188.30 216.244.66.244http/1.1ahmad9.com:80GET /vb/private.php?do=newpm&u=736 HTTP/1.1 28-0613310/0/144W 0.00002610540.00.0026.47 64.227.126.135http/1.1box104.exaservers.com:443GET /config.json HTTP/1.1 29-0440870/23/95W 2.381801033840.00.863.14 5.79.87.207http/1.1khalidalsawat.com:443GET /tag/%D8%A8%D8%A7%D8%B1%D9%83%D9%8A%D9%87-%D9%84%D8%A7%D8%B 30-0568641/16/142C 0.150112168517.20.183.48 64.227.126.135http/1.1box104.exaservers.com:443GET /s/730323e27383e29373e253/_/;/META-INF/maven/com.atlassian. 31-0440951/25/155C 2.440122553116.90.686.32 64.227.126.135http/1.1box104.exaservers.com:443GET /info.php HTTP/1.1 32-0-0/0/121. 0.003301039960.00.004.76 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 33-0-0/0/121. 0.0014402112470.00.0016.79 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 34-0-0/0/66. 0.001480359460.00.002.13 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 35-0-0/0/119. 0.008201453330.00.005.25 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 36-0450481/12/77C 0.49017313317.00.142.01 64.227.126.135http/1.1box104.exaservers.com:443GET /telescope/requests HTTP/1.1 37-0450491/35/123C 0.280117730317.00.558.88 64.227.126.135http/1.1box104.exaservers.com:443GET /.vscode/sftp.json HTTP/1.1 38-0-0/0/58. 0.0010704943670.00.001.95 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 39-0-0/0/45. 0.00150050300.00.001.83 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 40-0-0/0/95. 0.001240371430.00.003.71 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 41-0-0/0/31. 0.001520517360.00.0010.11 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 42-0-0/0/59. 0.003401322930.00.0020.67 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 43-0-0/0/27. 0.00145096590.00.001.74 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 44-0452550/34/61W 1.3120694320.01.042.35 34.82.117.190http/1.1dasco.sa:443GET / HTTP/1.1 45-0-0/0/33. 0.001170342150.00.001.72 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 46-0-0/0/60. 0.001660211010.00.003.65 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 47-0-0/0/152. 0.006002196600.00.007.50 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 48-0452640/33/78W 1.15120837630.02.104.07 5.79.87.207http/1.1khalidalsawat.com:443GET /tag/%D8%AF%D9%8A%D9%83%D9%88%D8%B1-%D8%BA%D8%B1%D9%81%D8%A 49-0-0/0/57. 0.006302220870.00.002.23 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 50-0-0/0/8. 0.00165018750.00.000.04 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 51-0-0/0/9. 0.00141073790.00.00
The server-status page (usually /server-status) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb31c7190ceac7190cea38bf6371
Apache Status Apache Server Status for box104.exaservers.com (via 5.79.87.207) Server Version: Apache/2.4.56 (cPanel) OpenSSL/1.1.1t mod_bwlimited/1.4 Server MPM: prefork Server Built: Mar 13 2023 20:17:55 Current Time: Wednesday, 26-Apr-2023 03:08:43 +03 Restart Time: Wednesday, 26-Apr-2023 02:44:56 +03 Parent Server Config. Generation: 1 Parent Server MPM Generation: 0 Server uptime: 23 minutes 47 seconds Server load: 3.44 2.20 1.58 Total accesses: 8703 - Total Traffic: 509.7 MB - Total Duration: 8872359 CPU Usage: u2.83 s2.67 cu231.02 cs71.15 - 21.6% CPU load 6.1 requests/sec - 365.7 kB/second - 60.0 kB/request - 1019.46 ms/request 29 requests currently being processed, 1 idle workers RWWWWCRRW..KR..W.RKCKWWRCR.C.WW_....CC......C...W....C.......... ................................................................ ...................... Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process <SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-0449930/44/351R 0.80423832567780.01.9610.84 95.184.42.2http/1.1 1-0594610/3/180W 0.13801663010.00.015.19 5.79.87.207http/1.1khalidalsawat.com:443POST /wp-admin/admin-ajax.php?action=rocket_partial_preload&non 2-0532160/3/245W 0.023802013210.00.0710.19 5.188.210.30http/1.1as-eg.com:443GET /attract-more-attention-sales-and-profits/ HTTP/1.0 3-0494500/30/206W 1.411402520140.01.5125.37 5.79.87.207http/1.1khalidalsawat.com:443GET /tag/%D8%AF%D9%8A%D9%83%D9%88%D8%B1%D8%A7%D8%AA-%D9%85%D9%8 4-0551780/14/285W 0.91701592960.00.3312.84 64.233.172.74http/1.1khalidalsawat.com:80HEAD /feed/ HTTP/1.1 5-0481611/29/291C 1.600124902210.40.6125.16 165.22.74.203http/1.1box104.exaservers.com:80GET /info.php HTTP/1.1 6-0533360/7/196R 1.535131599590.00.0816.37 92.72.97.96http/1.1 7-0511050/9/280R 0.146011291170.00.3717.94 92.72.97.96http/1.1 8-0431500/8/217W 0.321207330990.00.469.58 5.79.87.207http/1.1khalidalsawat.com:443GET /tag/%D8%AF%D9%8A%D9%83%D9%88%D8%B1%D8%A7%D8%AA-%D8%AC%D8%A 9-0-0/0/318. 0.002702165250.00.0012.44 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 10-0-0/0/280. 0.002902771090.00.0017.08 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 11-0565031/5/243K 0.0435692624270.90.1110.58 49.12.218.210http/1.1aljared.com.sa:80GET /wp-content/updates.php HTTP/1.1 12-0435980/32/212R 0.402381691214430.00.9527.28 90.167.219.242http/1.1 13-0-0/0/233. 0.003201620800.00.0015.18 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 14-0-0/0/267. 0.003301108980.00.0015.27 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 15-0483420/9/220W 0.505801622560.00.939.99 213.176.26.188http/1.1as-eg.com:443GET /free-advertising-for-your-online-business/blog-image-6/ HT 16-0-0/0/226. 0.0010872330.00.009.18 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 17-0412570/93/287R 2.561938481809250.04.939.11 98.10.103.122http/1.1 18-0448182/47/166K 2.444292127197.81.729.12 162.55.85.226http/1.1nkh5.com:80GET /quran/listen-10-58-17.html HTTP/1.1 19-0533921/6/260C 0.040123830510.40.1017.53 165.22.74.203http/1.1box104.exaservers.com:80GET /.git/config HTTP/1.1 20-0452391/34/190K 0.83012634910.81.999.09 20.218.125.22http/1.1cairotoptours.com:80GET /wp-content/rindex.php?action=add HTTP/1.1 21-0483460/28/248W 0.471701926900.01.4512.23 5.79.87.207http/1.1khalidalsawat.com:443GET /tag/%D8%A7%D8%AD%D8%AF%D8%AB-%D8%A7%D9%84%D8%AF%D9%8A%D9%8 22-0566900/5/174W 0.021101592390.00.0614.99 5.79.87.207http/1.1khalidalsawat.com:443GET /tag/%D8%AF%D9%8A%D9%83%D9%88%D8%B1%D8%A7%D8%AA-%D8%AE%D8%B 23-0533930/20/176R 0.46012397720.00.216.50 185.191.171.9http/1.1cairotoptours.com:443 24-0533941/8/106C 0.16019315310.40.314.27 165.22.74.203http/1.1box104.exaservers.com:80GET /.env HTTP/1.1 25-0439030/4/158R 0.022586757110.00.097.12 191.247.31.69http/1.1 26-0-0/0/201. 0.002601956420.00.008.35 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 27-0412781/103/149C 3.980115309710.45.128.24 165.22.74.203http/1.1box104.exaservers.com:80GET /.vscode/sftp.json HTTP/1.1 28-0-0/0/144. 0.001102610540.00.0026.47 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 29-0440870/23/95W 2.381501033840.00.863.14 5.79.87.207http/1.1khalidalsawat.com:443GET /tag/%D8%A8%D8%A7%D8%B1%D9%83%D9%8A%D9%87-%D9%84%D8%A7%D8%B 30-0568640/12/138W 0.13001216750.00.133.43 165.22.74.203http/1.1box104.exaservers.com:80GET /server-status HTTP/1.1 31-0440950/22/152_ 2.41012255210.00.646.27 165.22.74.203http/1.1box104.exaservers.com:80GET /debug/default/view?panel=config HTTP/1.1 32-0-0/0/121. 0.003001039960.00.004.76 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 33-0-0/0/121. 0.0014102112470.00.0016.79 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 34-0-0/0/66. 0.001450359460.00.002.13 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 35-0-0/0/119. 0.007901453330.00.005.25 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 36-0450481/10/75C 0.36017254910.40.121.99 165.22.74.203http/1.1box104.exaservers.com:80GET /telescope/requests HTTP/1.1 37-0450491/34/122C 0.270117730010.60.538.86 165.22.74.203http/1.1box104.exaservers.com:80GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 38-0-0/0/58. 0.0010404943670.00.001.95 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 39-0-0/0/45. 0.00147050300.00.001.83 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 40-0-0/0/95. 0.001210371430.00.003.71 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 41-0-0/0/31. 0.001490517360.00.0010.11 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 42-0-0/0/59. 0.003101322930.00.0020.67 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 43-0-0/0/27. 0.00142096590.00.001.74 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 44-0452551/34/61C 1.3103694321.31.042.35 185.191.171.37http/1.1al-mohafaza.com.sa:80GET /mohafazaup/go.php?go=rules&sid=yxTZTKTF5YtKxCxXhSurN-y0Z4a 45-0-0/0/33. 0.001140342150.00.001.72 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 46-0-0/0/60. 0.001630211010.00.003.65 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 47-0-0/0/152. 0.005702196600.00.007.50 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 48-0452640/33/78W 1.1590837630.02.104.07 5.79.87.207http/1.1khalidalsawat.com:443GET /tag/%D8%AF%D9%8A%D9%83%D9%88%D8%B1-%D8%BA%D8%B1%D9%81%D8%A 49-0-0/0/57. 0.006002220870.00.002.23 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 50-0-0/0/8. 0.00162018750.00.000.04 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 51-0-0/0/9. 0.00138073790.00.000.13 127.0.0.1http/1.1box104.exaservers.com:80OPTIONS * HTTP/1.0 52-0