The server-status page (usually /server-status) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb318daab2ef8daab2ef2b072323
Apache Status Apache Server Status for ds.qtest.abcmouse.com (via 10.192.14.162) Server Version: Apache/2.4.7 (Ubuntu) PHP/5.5.9-1ubuntu4.29 Server MPM: prefork Server Built: Jul 27 2017 15:20:24 Current Time: Friday, 28-Apr-2023 11:33:52 PDT Restart Time: Friday, 04-Dec-2020 12:27:21 PST Parent Server Config. Generation: 128 Parent Server MPM Generation: 127 Server uptime: 874 days 22 hours 6 minutes 30 seconds Server load: 0.64 0.15 0.09 Total accesses: 1325953 - Total Traffic: 11.6 GB CPU Usage: u519.01 s49.79 cu.59 cs11.35 - .000768% CPU load .0175 requests/sec - 164 B/second - 9.2 kB/request 9 requests currently being processed, 0 idle workers WWWWWW.W.WW................... Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqConnChildSlotClientVHostRequest 0-127264720/511/160592W 37.80000.06.251353.73 76.76.26.13876.76.26.138:80GET /.DS_Store HTTP/1.1 1-127462970/375/156916W 32.01000.05.101318.51 76.76.26.13876.76.26.138:80GET /info.php HTTP/1.1 2-127741370/257/156492W 24.32000.03.841321.20 76.76.26.13876.76.26.138:80GET /server-status HTTP/1.1 3-127286420/508/149374W 38.88000.06.811243.16 76.76.26.13876.76.26.138:80GET /telescope/requests HTTP/1.1 4-127296620/8/142750W 1.72000.00.281304.73 76.76.26.13876.76.26.138:80GET /login.action HTTP/1.1 5-127326480/0/134056W 38.37000.00.001198.39 76.76.26.13876.76.26.138:80GET /.git/config HTTP/1.1 6-127-0/0/124757. 35.4931225210.00.001022.26 76.76.26.13876.76.26.138:80GET /js/abcmouse_utils.js?v=1681339711 HTTP/1.1 7-127169190/647/101180W 45.04000.08.03844.58 76.76.26.13876.76.26.138:80GET /.env HTTP/1.1 8-127-0/0/75016. 6.3533096000.00.00719.26 ::176.76.26.138:80OPTIONS * HTTP/1.0 9-12759310/866/36043W 49.54000.09.61357.91 76.76.26.13876.76.26.138:80GET /config.json HTTP/1.1 10-127114520/737/20398W 47.48000.09.01310.98 76.76.26.13876.76.26.138:80GET /about HTTP/1.1 11-121-0/0/21016. 36.5735497002890.00.00218.48 76.76.26.13876.76.26.138:80GET /php.php HTTP/1.1 12-119-0/0/10736. 4.60459327300.00.00242.91 ::176.76.26.138:80OPTIONS * HTTP/1.0 13-113-0/0/13225. 1.78882055800.00.00109.09 ::176.76.26.138:80OPTIONS * HTTP/1.0 14-112-0/0/5678. 0.32889938800.00.0069.64 ::176.76.26.138:80OPTIONS * HTTP/1.0 15-113-0/0/5575. 61.1383938913530.00.0049.08 76.76.26.13876.76.26.138:80GET /update_browser HTTP/1.1 16-112-0/0/2632. 0.29889938700.00.0047.59 ::176.76.26.138:80OPTIONS * HTTP/1.0 17-113-0/0/3281. 62.0883938791650.00.0029.19 76.76.26.13876.76.26.138:80GET //app/.env HTTP/1.1 18-112-0/0/3223. 9.72882739900.00.0046.31 ::176.76.26.138:80OPTIONS * HTTP/1.0 19-112-0/0/1225. 8.77882739900.00.0034.59 ::176.76.26.138:80OPTIONS * HTTP/1.0 20-112-0/0/240. 9.65882739900.00.003.23 ::176.76.26.138:80OPTIONS * HTTP/1.0 21-112-0/0/161. 9.72882739900.00.003.11 ::176.76.26.138:80OPTIONS * HTTP/1.0 22-112-0/0/166. 9.73882739900.00.003.61 ::176.76.26.138:80OPTIONS * HTTP/1.0 23-112-0/0/906. 0.00889940000.00.0025.70 ::176.76.26.138:80OPTIONS * HTTP/1.0 24-112-0/0/51. 0.00889939900.00.001.42 ::176.76.26.138:80OPTIONS * HTTP/1.0 25-93-0/0/78. 3.662032095400.00.001.66 ::176.76.26.138:80OPTIONS * HTTP/1.0 26-93-0/0/65. 4.402032095400.00.000.99 ::176.76.26.138:80OPTIONS * HTTP/1.0 27-93-0/0/36. 0.642036965300.00.001.00 ::176.76.26.138:80OPTIONS * HTTP/1.0 28-93-0/0/37. 0.232036967000.00.001.01 ::176.76.26.138:80OPTIONS * HTTP/1.0 29-93-0/0/48. 0.452036966700.00.001.39 ::176.76.26.138:80OPTIONS * HTTP/1.0 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot Apache/2.4.7 (Ubuntu) Server at ds.qtest.abcmouse.com Port 80
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb318daab2ef8daab2ef05dc875a
Apache Status Apache Server Status for ds.qtest.abcmouse.com (via 10.192.14.162) Server Version: Apache/2.4.7 (Ubuntu) PHP/5.5.9-1ubuntu4.29 Server MPM: prefork Server Built: Jul 27 2017 15:20:24 Current Time: Monday, 04-Jul-2022 23:04:48 PDT Restart Time: Friday, 04-Dec-2020 12:27:21 PST Parent Server Config. Generation: 86 Parent Server MPM Generation: 85 Server uptime: 577 days 9 hours 37 minutes 26 seconds Server load: 0.00 0.01 0.05 Total accesses: 914574 - Total Traffic: 7.5 GB CPU Usage: u450.51 s49.09 cu.4 cs9.65 - .00102% CPU load .0183 requests/sec - 162 B/second - 8.7 kB/request 1 requests currently being processed, 9 idle workers ___W____._._.................. Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqConnChildSlotClientVHostRequest 0-85947480/255/111768_ 14.3104340.03.56872.06 76.76.26.13876.76.26.138:80GET /?rest_route=/wp/v2/users/ HTTP/1.1 1-851007510/250/109827_ 10.87325300.02.88835.80 76.76.26.13876.76.26.138:80GET /robots.txt HTTP/1.1 2-85945960/258/110176_ 12.4454620.03.54852.39 76.76.26.13876.76.26.138:80GET / HTTP/1.1 3-851007830/251/104034W 11.20000.02.77790.63 76.76.26.13876.76.26.138:80GET /server-status HTTP/1.1 4-85945980/261/102390_ 13.4702030.03.31902.22 76.76.26.13876.76.26.138:80GET / HTTP/1.1 5-851010500/234/96659_ 10.9503750.02.76828.55 76.76.26.13876.76.26.138:80GET /telescope/requests HTTP/1.1 6-851011140/233/88193_ 12.458143380.03.37654.73 76.76.26.13876.76.26.138:80GET / HTTP/1.1 7-85945990/259/72429_ 11.93325200.03.52541.71 76.76.26.13876.76.26.138:80GET / HTTP/1.1 8-82-0/0/47057. 6.98192230500.00.00431.68 ::176.76.26.138:80OPTIONS * HTTP/1.0 9-85945970/258/17377_ 14.2514210.03.96167.65 76.76.26.13876.76.26.138:80GET / HTTP/1.1 10-82-0/0/10650. 25.61128082600.00.00216.03 ::176.76.26.138:80OPTIONS * HTTP/1.0 11-85946000/259/10571_ 12.408143050.03.24119.51 76.76.26.13876.76.26.138:80GET / HTTP/1.1 12-82-0/0/7289. 28.54126860100.00.00203.76 ::176.76.26.138:80OPTIONS * HTTP/1.0 13-82-0/0/8149. 25.60126860300.00.0061.34 ::176.76.26.138:80OPTIONS * HTTP/1.0 14-78-0/0/4691. 0.47434131700.00.0056.50 ::176.76.26.138:80OPTIONS * HTTP/1.0 15-78-0/0/3827. 29.17368825200.00.0028.57 ::176.76.26.138:80OPTIONS * HTTP/1.0 16-76-0/0/2066. 0.23555089000.00.0038.59 ::176.76.26.138:80OPTIONS * HTTP/1.0 17-76-0/0/2089. 0.43555088600.00.0015.17 ::176.76.26.138:80OPTIONS * HTTP/1.0 18-68-0/0/3062. 95.621032049900.00.0043.43 76.76.26.13876.76.26.138:80GET /plesk-stat/ HTTP/1.1 19-68-0/0/1040. 95.481032049300.00.0032.08 76.76.26.13876.76.26.138:80GET /info.php HTTP/1.1 20-68-0/0/58. 0.431038586800.00.001.55 ::176.76.26.138:80OPTIONS * HTTP/1.0 21-68-0/0/44. 0.211038590600.00.001.09 ::176.76.26.138:80OPTIONS * HTTP/1.0 22-68-0/0/49. 0.001038591300.00.001.52 ::176.76.26.138:80OPTIONS * HTTP/1.0 23-68-0/0/862. 75.361032088000.00.0025.20 ::176.76.26.138:80OPTIONS * HTTP/1.0 24-68-0/0/46. 0.211038590900.00.001.32 ::176.76.26.138:80OPTIONS * HTTP/1.0 25-68-0/0/36. 0.211038590800.00.001.11 ::176.76.26.138:80OPTIONS * HTTP/1.0 26-68-0/0/23. 0.201038590700.00.000.55 ::176.76.26.138:80OPTIONS * HTTP/1.0 27-68-0/0/32. 0.001038591300.00.000.85 ::176.76.26.138:80OPTIONS * HTTP/1.0 28-68-0/0/35. 0.211038590400.00.000.96 ::176.76.26.138:80OPTIONS * HTTP/1.0 29-43-0/0/45. 0.422490472500.00.001.29 ::176.76.26.138:80OPTIONS * HTTP/1.0 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot Apache/2.4.7 (Ubuntu) Server at ds.qtest.abcmouse.com Port 80