The server-status page (usually /server-status) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb311626356516263565d47c2b0b
Apache Status Apache Server Status for cloud.ismdlab.xyz (via 10.10.20.151) Server Version: Apache/2.4.41 (Ubuntu) OpenSSL/1.1.1f Server MPM: prefork Server Built: 2022-06-14T13:30:55 Current Time: Monday, 14-Nov-2022 07:34:45 UTC Restart Time: Friday, 11-Nov-2022 05:49:08 UTC Parent Server Config. Generation: 4 Parent Server MPM Generation: 3 Server uptime: 3 days 1 hour 45 minutes 36 seconds Server load: 5.47 4.96 4.70 Total accesses: 6975771 - Total Traffic: 13458.5 GB - Total Duration: 3417652680 CPU Usage: u238.42 s123.26 cu265257 cs72369.5 - 127% CPU load 26.3 requests/sec - 51.9 MB/second - 2.0 MB/request - 489.932 ms/request 12 requests currently being processed, 6 idle workers WWW__WW_._W._......W...._.......WWW.........W..W................ ................................................................ ...................... Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-36946010/184/434551W 10.222001723195640.0113.16893634.06 10.10.20.150http/1.1cloud.philsys.gov.ph:8080GET /ocs/v2.php/apps/spreed/api/v1/chat/7it6yabs?setReadMarker= 1-36908870/631/422255W 26.25001702973050.0553.50872348.44 10.10.20.150http/1.1cloud.philsys.gov.ph:8080GET /remote.php/dav/files/ayamat/IDPMD/Print%20Files/OCTOBER%20 2-36927360/392/425097W 16.422101678997110.0390.86874610.31 10.10.20.150http/1.1cloud.philsys.gov.ph:8080GET /ocs/v2.php/apps/spreed/api/v3/signaling/7it6yabs HTTP/1.0 3-36947410/256/409549_ 13.8101251651457320.0144.26853092.44 10.10.20.150http/1.1cloud.philsys.gov.ph:8080POST /index.php/apps/richdocuments/wopi/files/17419350_ocr9jbu2 4-36957970/84/352162_ 3.7601212062471160.035.62782276.06 10.10.20.150http/1.1cloud.philsys.gov.ph:8080GET /remote.php/dav/files/ayamat/IDPMD/Print%20Files/OCTOBER%20 5-36948250/136/389576W 8.511801583941570.0186.16807450.13 10.10.20.150http/1.1cloud.philsys.gov.ph:8080GET /ocs/v2.php/apps/spreed/api/v1/chat/amh37ci4?setReadMarker= 6-36958900/14/386304W 0.611001710172840.045.59843206.88 10.10.20.150http/1.1cloud.philsys.gov.ph:8080POST /index.php/apps/richdocuments/wopi/files/9925063_ocr9jbu2l 7-36949870/220/373740_ 10.5101461518880260.0236.71783638.06 10.10.20.150http/1.1cloud.philsys.gov.ph:8080POST /index.php/apps/richdocuments/wopi/files/28580168_ocr9jbu2 8-3-0/0/364019. 0.006701478978580.00.00763798.00 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 9-36919760/357/335943_ 16.9802281369533110.0379.81693043.38 10.10.20.150http/1.1cloud.philsys.gov.ph:8080PROPFIND /remote.php/dav/files/dpresado/IDPMD/Carrier%20old HTT 10-36936960/271/320962W 12.152101334396760.0193.71664542.50 10.10.20.150http/1.1cloud.philsys.gov.ph:8080GET /ocs/v2.php/apps/spreed/api/v3/signaling/amh37ci4 HTTP/1.0 11-3-0/0/293008. 0.007601257722230.00.00616983.81 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 12-36936990/269/272103_ 12.380991211927340.0269.79587316.00 10.10.20.150http/1.1cloud.philsys.gov.ph:8080POST /index.php/apps/richdocuments/wopi/files/154672_ocr9jbu2lz 13-3-0/0/233609. 0.006601046035900.00.00482995.69 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 14-3-0/0/177939. 0.00100882657550.00.00350106.16 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 15-3-0/0/151035. 0.00320755114800.00.00284241.75 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 16-3-0/0/135802. 0.00800673125280.00.00256167.34 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 17-3-0/0/123560. 0.00860640080620.00.00227082.47 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 18-3-0/0/108557. 0.00480602136760.00.00198686.50 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 19-36937120/334/82006W 21.4800498826050.0265.09125901.80 10.10.20.150http/1.1cloud.philsys.gov.ph:8080PROPFIND /public.php/webdav/Negros%20Occidental/Validated%20PSU 20-3-0/0/82084. 0.00870482428940.00.00141923.56 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 21-3-0/0/69219. 0.00700441658100.00.00106121.79 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 22-3-0/0/63756. 0.00720434549620.00.00116201.18 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 23-3-0/0/65398. 0.00780447452370.00.00109173.32 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 24-36919880/461/65722_ 23.950213429011790.0277.11125902.91 10.10.20.150http/1.1cloud.philsys.gov.ph:8080GET /remote.php/dav/files/ayamat/IDPMD/Print%20Files/OCTOBER%20 25-3-0/0/55841. 0.00710370462130.00.0084452.50 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 26-3-0/0/57979. 0.00830343726410.00.0099322.67 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 27-3-0/0/48193. 0.00540316158990.00.0073043.13 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 28-3-0/0/41989. 0.00920279974760.00.0065967.77 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 29-3-0/0/33451. 0.00900246772190.00.0051679.25 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 30-3-0/0/33282. 0.00910251368440.00.0048384.54 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 31-3-0/0/35992. 0.00680254167890.00.0049017.02 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 32-36882840/916/31533W 45.4900227845580.0759.7448676.66 10.10.20.150http/1.1cloud.philsys.gov.ph:8080GET /telescope/requests HTTP/1.0 33-36937240/371/31180W 17.3600220563850.0302.1946978.98 10.10.20.150http/1.1cloud.philsys.gov.ph:8080GET /?rest_route=/wp/v2/users/ HTTP/1.0 34-36937250/252/27461W 12.6500221473640.0246.6239358.08 10.10.20.150http/1.1cloud.philsys.gov.ph:8080GET /s/238313e2934313e20393e2230323/_/;/META-INF/maven/com.atla 35-3-0/0/27292. 0.00420210125860.00.0039472.57 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 36-3-0/0/21309. 0.00790164635420.00.0030361.87 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 37-3-0/0/22457. 0.00570169929930.00.0031406.01 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 38-3-0/0/20990. 0.00930158798800.00.0032313.88 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 39-3-0/0/19575. 0.00880186907190.00.0025777.61 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 40-3-0/0/23427. 0.00741167420830.00.0034663.36 10.10.20.150http/1.1cloud.philsys.gov.ph:8080GET /apps/richdocumentscode/proxy.php?req=/hosting/capabilities 41-3-0/0/24339. 0.00690163878690.00.0030236.96 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 42-3-0/0/19847. 0.00850171946570.00.0028175.62 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 43-3-0/0/20002. 0.00820138249460.00.0025379.12 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 44-36937350/366/21048W 20.6300161019440.0369.6632480.03 10.10.20.150http/1.1cloud.philsys.gov.ph:8080GET /info.php HTTP/1.0 45-3-0/0/22386. 0.00300168760040.00.0030701.95 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 46-3-0/0/17528. 0.00840140459860.00.0021049.22 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 47-36920090/399/21117W 21.7200151563200.0288.0327502.60 10.10.20.150http/1.1cloud.philsys.gov.ph:8080GET /server-status HTTP/1.0 48-3-0/0/14919. 0.001620120697130.00.0019780.82 ::1http/1.1cloud.philsys.gov.ph:8080OPTIONS * HTTP/1.0 49-3-0/0/15182. 0.003030118264930.00.0020426.44 ::1http/1.1