The server-status page (usually /server-status) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb316f2002776f200277b95e316c
Apache Status Apache Server Status for develop.appli-shop.com (via 192.121.101.163) Server Version: Apache/2.4.46 (Ubuntu) mod_fastcgi/mod_fastcgi-SNAP-0910052141 OpenSSL/1.1.1k Server MPM: event Server Built: 2020-09-08T10:12:22 Current Time: Monday, 27-Jun-2022 10:31:09 CEST Restart Time: Wednesday, 25-May-2022 12:27:22 CEST Parent Server Config. Generation: 94 Parent Server MPM Generation: 93 Server uptime: 32 days 22 hours 3 minutes 47 seconds Server load: 0.24 0.23 0.18 Total accesses: 315353 - Total Traffic: 9.4 GB - Total Duration: 610601665 CPU Usage: u80.75 s106.19 cu1299.67 cs623.59 - .0742% CPU load .111 requests/sec - 3545 B/second - 31.2 kB/request - 1936.25 ms/request 6 requests currently being processed, 94 idle workers SlotPIDStoppingConnections ThreadsAsync connections totalacceptingbusyidlewritingkeep-aliveclosing 0552no0yes025000 1681no1yes025000 2584no0yes619000 4609no1yes025000 Sum402 694000 ________________________________________________________________ __R___RWRRR........................._________________________... ................................................................ ................................................................ ................................................................ ................................................................ ................ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-935520/0/616_ 0.001603779020.00.0031.79 90.143.224.209h2psdev.appli.se:443done, streams: 0/14/12/0/2 (open/recv/resp/push/rst) 0-935520/0/430_ 0.0016104111740.00.0012.80 154.89.5.120http/1.1done, streams: 0/2/2/0/0 (open/recv/resp/push/rst) 0-935520/0/675_ 0.001652959610.00.0014.69 31.209.5.143http/1.1psdev.appli.se:80GET /phpmyadmin/js/codemirror/addon/hint/show-hint.css?v=4.5.4. 0-935520/0/675_ 0.00163661113590.00.0014.28 31.209.5.143http/1.1psdev.appli.se:80GET /phpmyadmin/themes/pmahomme/css/printview.css?v=4.5.4.1deb2 0-935520/0/554_ 0.00162543426310.00.0016.66 31.209.5.143http/1.1psdev.appli.se:80GET /phpmyadmin/js/get_scripts.js.php?scripts%5B%5D=common.js&s 0-935520/0/753_ 0.00162244846380.00.0024.89 31.209.5.143http/1.1psdev.appli.se:80GET /phpmyadmin/js/messages.php?lang=sv&db=&token=210a8cd01822d 0-935520/0/555_ 0.001605583450.00.0017.30 185.220.101.157http/1.1 0-935520/0/486_ 0.0016193571270.00.0012.22 185.220.101.173http/1.1 0-935520/0/625_ 0.001603741870.00.0014.62 95.198.47.24h2psdev.appli.se:443idle, streams: 0/1/1/0/0 (open/recv/resp/push/rst) 0-935520/0/628_ 0.001603714470.00.0015.69 95.198.47.24h2psdev.appli.se:443done, streams: 0/2/2/0/0 (open/recv/resp/push/rst) 0-935520/0/660_ 0.001603730210.00.0015.87 90.232.119.164h2psdev.appli.se:443idle, streams: 0/1/1/0/0 (open/recv/resp/push/rst) 0-935520/0/847_ 0.0016203858860.00.0019.87 185.7.214.104http/1.1dev.kassaportal.blomsterboda.sePOST /vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php HTTP/1 0-935520/1/656_ 0.02084260240.00.0115.29 178.128.45.181http/1.1dev.kassaportal.blomsterboda.seHELP 0-935520/0/531_ 0.00014803927610.00.0016.26 31.209.5.143h2dev.polysonic.appli-shop.com:44idle, streams: 0/9/7/0/2 (open/recv/resp/push/rst) 0-935520/0/508_ 0.001617443643050.00.0016.84 31.209.5.143h2dev.polysonic.appli-shop.com:44idle, streams: 0/7/6/0/1 (open/recv/resp/push/rst) 0-935520/0/683_ 0.001604091700.00.0017.59 205.210.31.15http/1.1done, streams: 0/1/1/0/0 (open/recv/resp/push/rst) 0-935520/0/451_ 0.001613154330.00.0010.07 31.209.5.143h2dev.polysonic.appli-shop.com:44idle, streams: 0/5/5/0/0 (open/recv/resp/push/rst) 0-935520/0/568_ 0.001601183699550.00.0013.99 95.198.47.24h2psdev.appli.se:443done, streams: 0/2/2/0/0 (open/recv/resp/push/rst) 0-935520/0/653_ 0.001605046770.00.0019.23 95.204.205.79h2psdev.appli.se:443idle, streams: 0/1/1/0/0 (open/recv/resp/push/rst) 0-935520/0/554_ 0.001614184208250.00.0013.74 31.209.5.143h2dev.polysonic.appli-shop.com:44idle, streams: 0/1/1/0/0 (open/recv/resp/push/rst) 0-935520/0/488_ 0.00162293017540.00.0010.27 31.209.5.143h2dev.polysonic.appli-shop.com:44idle, streams: 0/2/2/0/0 (open/recv/resp/push/rst) 0-935520/0/736_ 0.001614789080.00.0018.56 31.209.5.143h2dev.polysonic.appli-shop.com:44idle, streams: 0/2/2/0/0 (open/recv/resp/push/rst) 0-935520/1/471_ 0.03003587540.00.0112.99 178.128.45.181http/1.1develop.appli-shop.com:443GET /.git/config HTTP/1.1 0-935520/0/539_ 0.001623491800.00.0015.84 31.209.5.143h2dev.polysonic.appli-shop.com:44idle, streams: 0/13/11/0/2 (open/recv/resp/push/rst) 0-935520/0/471_ 0.001613704204740.00.0012.41 31.209.5.143h2dev.polysonic.appli-shop.com:44idle, streams: 0/14/12/0/2 (open/recv/resp/push/rst) 1-936810/1/964_ 0.02553726554710.00.0028.26 31.209.5.143h2develop.appli-shop.com:443idle, streams: 0/1/1/0/0 (open/recv/resp/push/rst) 1-936810/1/1142_ 0.03416386255950.00.0024.80 31.209.5.143h2develop.appli-shop.com:443idle, streams: 0/2/2/0/0 (open/recv/resp/push/rst) 1-936810/8/1004_ 0.1931287343090.00.4328.61 31.209.5.143h2develop.appli-shop.com:443idle, streams: 0/10/10/0/0 (open/recv/resp/push/rst) 1-936810/3/1084_ 0.20306058470.00.0026.13 31.209.5.143h2develop.appli-shop.com:443idle, streams: 0/13/13/0/0 (open/recv/resp/push/rst) 1-936810/1/1117_ 0.20306143760.00.0023.33 31.209.5.143h2develop.appli-shop.com:443idle, streams: 0/14/14/0/0 (open/recv/resp/push/rst) 1-936810/3/1067_ 0.22029958365130.00.0329.98 31.209.5.143h2develop.appli-shop.com:443idle, streams: 0/17/17/0/0 (open/recv/resp/push/rst) 1-936810/1/1140_ 0.210078727760.00.0032.20 142.93.141.182http/1.1dev.kassaportal.blomsterboda.seHELP 1-936810/0/1019_ 0.00005570910.00.0023.62 31.209.5.143h2psdev.appli.se:443idle, streams: 0/15/14/0/1 (open/recv/resp/push/rst) 1-936810/0/1258_ 0.0002466214990.00.0029.73 178.128.45.181h2done, streams: 0/0/0/0/0 (open/recv/resp/push/rst) 1-936810/0/1000_ 0.000187026170.00.0033.77 178.128.45.181http/1.1 1-936810/0/1205_ 0.0001417159690.00.0032.45 178.128.45.181h2done, streams: 0/0/0/0/0 (open/recv/resp/push/rst) 1-936810/0/972_ 0.0001317096210.00.0024.16 178.128.45.181http/1.1 1-936810/1/996_ 0.2300704843180.00.0122.42 178.128.45.181http/1.1develop.appli-shop.com:443GET /s/3139322e3132312e3130312e313633/_/;/META-INF/maven/com.at 1-936810/0/970_ 0.001616249427770.00.0027.29 31.209.5.143h2psdev.appli.se:443idle, streams: 0/20/19/0/1 (open/recv/resp/push/rst) 1-936810/0/1193_ 0.001647443950.00.0024.72 31.209.5.143http/1.1psdev.appli.se:80GET /phpmyadmin/themes/pmahomme/jquery/jquery-ui-1.11.2.css HTT 1-936810/0/1268_ 0.001655605160.00.0026.76 31.209.5.143http/1.1psdev.appli.se:80GET /phpmyadmin/js/codemirror/lib/codemirror.css?v=4.5.4.1deb2u 1-936810/0/1001_ 0.001655478720.00.0019.27 31.209.5.143http/1.1psdev.appli.se:80GET /phpmyadmin/js/codemirror/addon/lint/lint.css?v=4.5.4.1deb2 1-936810/0/1020_ 0.00161996813570.00.0024.60 31.209.5.143http/1.1psdev.appli.se:80done, streams: 0/20/19/0/1 (open/recv/resp/push/rst) 1-936810/0/1113_ 0.00162095953540.00.0026.27 31.209.5.143h2psdev.appli.se:443idle, streams: 0/3/3/0/0 (open/recv/resp/push/rst) 1-936810/0/1045_ 0.00162035463920.00.0018.69 31.209.5.143h2psdev.appli.se:443idle, streams: 0/1/1/0/0 (open/recv/resp/push/rst) 1-936810/0/1139_ 0.0016