The server-status page (usually /server-status) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb314fc114044fc114046e00dd39
Apache Status Apache Server Status for echoesinlight.com (via 127.0.0.1) Server Version: Apache/2.4.37 (CloudLinux) OpenSSL/1.1.1k mod_fcgid/2.3.9 Phusion_Passenger/6.0.23 Server MPM: event Server Built: Aug 12 2024 10:46:55 Current Time: Saturday, 21-Dec-2024 17:56:53 GMT Restart Time: Thursday, 19-Dec-2024 10:55:50 GMT Parent Server Config. Generation: 28 Parent Server MPM Generation: 27 Server uptime: 2 days 7 hours 1 minute 3 seconds Server load: 1.07 0.98 0.99 Total accesses: 346457 - Total Traffic: 10.3 GB - Total Duration: 488893606 CPU Usage: u32.17 s13.62 cu104324 cs123423 - 115% CPU load 1.75 requests/sec - 54.3 kB/second - 31.0 kB/request - 1411.12 ms/request 3 requests currently being processed, 0 workers gracefully restarting, 122 idle workers SlotPIDStoppingConnections ThreadsAsync connections totalacceptingbusygracefulidlewritingkeep-aliveclosing 02299086no0yes0025000 22298968no0yes3022000 32298920no0yes0025000 42298838no0yes0025000 52298976no0yes0025000 Sum500 30122000 _________________________.........................___W__________ _W_W____________________________________________________________ ______________________ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-2722990860/15/2502_ 1.6622187933123980.00.4355.78 149.255.58.98http/1.1markstothard.uk:7081POST /wp-cron.php?doing_wp_cron=1734803789.46852898597717285156 0-2722990860/8/2492_ 1.6438117734880480.00.0554.45 47.111.116.44http/1.1cofltd.co.uk:7081POST /wp-login.php HTTP/1.0 0-2722990860/11/2507_ 1.5738233902870.00.43151.07 127.0.0.1http/1.1echoesinlight.co.uk:7081GET /.git/config HTTP/1.0 0-2722990860/14/2449_ 1.6716157534801530.00.18143.85 52.71.46.142http/1.1sudburyjoggers.club:7081GET /events/tag/10-minutes/page/10/?tribe-bar-date=2024-07-29 H 0-2722990860/12/2419_ 1.688263132606030.00.1259.34 149.255.58.98http/1.1bondita.co.uk:7081POST /wp-cron.php?doing_wp_cron=1734803802.74924707412719726562 0-2722990860/10/2506_ 1.63463034032900.00.1273.68 86.190.229.183http/1.1webmail.bettywilliams.co.uk:708POST /roundcube/?_task=mail&_action=refresh HTTP/1.0 0-2722990860/11/2492_ 1.5135134741650.00.1365.44 3.138.170.136http/1.1topazblue.com:7081GET /old HTTP/1.0 0-2722990860/11/2498_ 1.5316141534567820.00.1056.02 3.94.40.182http/1.1sudburyjoggers.club:7081GET /events/tag/10-minutes/page/10/?tribe-bar-date=2024-07-04 H 0-2722990860/14/2511_ 1.688133432158280.00.1660.78 35.171.141.42http/1.1sudburyjoggers.club:7081GET /events/tag/10-minutes/page/10/?tribe-bar-date=2024-07-31 H 0-2722990860/11/2484_ 1.6635155133083640.00.16148.65 184.73.239.35http/1.1sudburyjoggers.club:7081GET /events/tag/10-minutes/page/10/?tribe-bar-date=2024-07-24 H 0-2722990860/14/2531_ 1.5555034350570.00.2662.87 127.0.0.1http/1.1echoesinlight.co.uk:7080GET /?rest_route=/wp/v2/users/ HTTP/1.0 0-2722990860/11/2461_ 1.558229334015500.00.08170.24 3.215.59.93http/1.1sudburyjoggers.club:7081GET /events/tag/10-minutes/page/10/?tribe-bar-date=2024-07-06 H 0-2722990860/11/2458_ 1.6056200833787630.00.2059.49 3.215.59.93http/1.1sudburyjoggers.club:7081GET /events/tag/10-minutes/page/10/?tribe-bar-date=2024-07-19 H 0-2722990860/11/2512_ 1.4956233779470.00.5859.56 3.138.170.136http/1.1topazblue.com:7080GET /bk HTTP/1.0 0-2722990860/12/2538_ 1.680134324200.00.1456.81 127.0.0.1http/1.1default:7080POST /php-cgi/php-cgi.exe?%ADd+cgi.force_redirect%3D0+%ADd+disa 0-2722990860/12/2484_ 1.615537233148950.00.1265.28 18.116.40.29http/1.1transfersdelsol.com:7081GET /transfer/taxi-from-malaga-airport-to-marriott-playa-andalu 0-2722990860/13/2493_ 1.5551032282670.00.1461.54 127.0.0.1http/1.1echoesinlight.co.uk:7081GET /about HTTP/1.0 0-2722990860/14/2492_ 1.6439233334198200.00.1660.36 52.44.174.136http/1.1sudburyjoggers.club:7081GET /events/tag/10-minutes/page/10/?tribe-bar-date=2024-07-23 H 0-2722990860/10/2498_ 1.5056235393520.00.3459.96 3.138.170.136http/1.1topazblue.com:7080GET /backup HTTP/1.0 0-2722990860/9/2423_ 1.6255232642800.00.1081.30 127.0.0.1http/1.1default-149_255_58_98:7081GET / HTTP/1.0 0-2722990860/11/2470_ 1.634943233582370.00.1964.06 149.255.58.98http/1.1jesterlarf.com:7081POST /wp-cron.php?doing_wp_cron=1734803763.25417304039001464843 0-2722990860/13/2462_ 1.6340236326280.00.2561.18 173.239.201.138http/1.1default:7080GET / HTTP/1.0 0-2722990860/11/2484_ 1.6251233435734560.00.1557.76 34.206.212.24http/1.1sudburyjoggers.club:7081GET /events/tag/10-minutes/page/10/?tribe-bar-date=2024-07-20 H 0-2722990860/10/2476_ 1.5639459935538330.00.20142.77 127.0.0.1http/1.1echoesinlight.co.uk:7081GET /.env HTTP/1.0 0-2722990860/12/2471_ 1.6620335125660.00.3361.29 63.143.42.253http/1.1shadowcomputers.co.uk:7081GET / HTTP/1.0 1-20-0/0/1956. 0.005101451832073190.00.00140.16 216.244.66.201http/1.1cofltd.co.uk:7081GET /wp-content/uploads/2019/10/COF-CIRC-3.jpg HTTP/1.0 1-20-0/0/2013. 0.0051014127931445720.00.00130.65 40.65.153.97http/1.1sudburyjoggers.club:7081GET /depotcv.php HTTP/1.0 1-20-0/0/1993. 0.00510142329094060.00.0052.22 17.241.75.164http/1.1integratedesigns.co.uk:7081GET /the-importance-of-a-sturdy-retaining-wall/ HTTP/1.0 1-20-0/0/1935. 0.005101480627401730.00.0052.59 149.255.58.98http/1.1cofltd.co.uk:7081POST /wp-admin/admin-post.php HTTP/1.0 1-20-0/0/2008. 0.00510145231719520.00.0054.77 149.255.58.98http/1.1integratedesigns.co.uk:7081POST /wp-cron.php?doing_wp_cron=1734752633.80666804313659667968 1-20-0/0/1942. 0.0051014161627008720.00.0050.40 44.221.105.234http/1.1sudburyjoggers.club:7081GET /?eventDate=2027-08-22&eventDisplay=day&paged=2&post_type=t 1-20-0/0/2015. 0.0051014118231932960.00.0052.62 40.65.153.97http/1.1sudburyjoggers.club:7081GET /embed.php HTTP/1.0 1-20-0/0/1956. 0.0051014228116320.00.0050.56 146.190.20.113http/1.1default:7080GET / HTTP/1.0 1-20-0/0/2010. 0.0051014122829792130.00.0052.98 40.65.153.97http/1.1sudburyjoggers.club:7081GET /OthioNDwMEK.php HTTP/1.0 1-20-0/0/2005. 0.005101450128933590.00.0053.40 149.255.58.98http/1.1cofltd.co.uk:7081POST /wp-cron.php?doing_wp_cron=1734752739.71592807769775390625 1-20-0/0/1987. 0.00510142531331807650.00.0049.54 149.255.58.98http/1.1thelccgroup.co.uk:7081POST /?mailpoet_router&endpoint=cron_daemon&action=run&data=eyJ 1-20-0/0/1937. 0.0051014109226489570.00.0097.75 149.255.58.98http/1.1sudburyjoggers.club:7081POST /wp-cron.php?doing_wp_cron=1734752590.23708796501159667968 1-20-0/0/2035. 0.0051014180528310300.00.0050.62 5.102.173.71http/1.1cofltd.co.uk:7081GET /product/straight-floor-standing-screen/ HTTP/1.0 1-20-0/0/1982. 0.0051014191329903880.00.0043.40 34.196.114.170http/1.1sudburyjoggers.club:7081GET /?eventDate=2027-07-29&eventDisplay=day&paged=2&post_type=t 1-20-0/0/1927. 0.005101435526649450.00.0054.96 54.36.148.220http/1.1transfersdelsol.com:7081GET /transfer/malaga-airport-transfers-to-farajan/ HTTP/1.0 1-20-0/0/1925. 0.0051014162028215980.00.0047.74 34.236.135.14http/1.1sudburyjoggers.club:7081GET /?eventDate=2027-07-30&eventDisplay=day&paged=2&post_type=t 1-20-0/0/1999. 0.0051014489029164420.00.0051.24 149.255.58.98http/1.1sudburyjoggers.club:7081POST /wp-cron.php?doing_wp_cron=1734752760.40090894699096679687 1-20-0/0/1973. 0.0051014144427867880.00.0051.78 52.203.65.83http/1.1sudburyjoggers.club:7081GET /?eventDate=2027-08-05&eventDisplay=day&paged=2&post_type=t 1-20-0/0/2010. 0.0051014145
The server-status page (usually /server-status) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb314fc114044fc114043f119392
Apache Status Apache Server Status for echoesinlight.com (via 127.0.0.1) Server Version: Apache/2.4.37 (CloudLinux) OpenSSL/1.1.1k mod_fcgid/2.3.9 Phusion_Passenger/6.0.23 Server MPM: event Server Built: Aug 12 2024 10:46:55 Current Time: Saturday, 21-Dec-2024 17:56:54 GMT Restart Time: Thursday, 19-Dec-2024 10:55:50 GMT Parent Server Config. Generation: 28 Parent Server MPM Generation: 27 Server uptime: 2 days 7 hours 1 minute 3 seconds Server load: 1.07 0.98 0.99 Total accesses: 346477 - Total Traffic: 10.3 GB - Total Duration: 488896155 CPU Usage: u32.22 s13.66 cu104324 cs123423 - 115% CPU load 1.75 requests/sec - 54.3 kB/second - 31.0 kB/request - 1411.05 ms/request 2 requests currently being processed, 0 workers gracefully restarting, 123 idle workers SlotPIDStoppingConnections ThreadsAsync connections totalacceptingbusygracefulidlewritingkeep-aliveclosing 02299086no0yes1024000 22298968no0yes1024000 32298920no0yes0025000 42298838no0yes0025000 52298976no0yes0025000 Sum500 20123000 _______________________W_.........................______________ _W______________________________________________________________ ______________________ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-2722990860/15/2502_ 1.6622187933123980.00.4355.78 149.255.58.98http/1.1markstothard.uk:7081POST /wp-cron.php?doing_wp_cron=1734803789.46852898597717285156 0-2722990860/8/2492_ 1.6439117734880480.00.0554.45 47.111.116.44http/1.1cofltd.co.uk:7081POST /wp-login.php HTTP/1.0 0-2722990860/11/2507_ 1.5739233902870.00.43151.07 127.0.0.1http/1.1echoesinlight.co.uk:7081GET /.git/config HTTP/1.0 0-2722990860/14/2449_ 1.6717157534801530.00.18143.85 52.71.46.142http/1.1sudburyjoggers.club:7081GET /events/tag/10-minutes/page/10/?tribe-bar-date=2024-07-29 H 0-2722990860/12/2419_ 1.688263132606030.00.1259.34 149.255.58.98http/1.1bondita.co.uk:7081POST /wp-cron.php?doing_wp_cron=1734803802.74924707412719726562 0-2722990860/11/2507_ 1.710234032920.00.1273.68 127.0.0.1http/1.1default:7080GET /telescope/requests HTTP/1.0 0-2722990860/11/2492_ 1.5136134741650.00.1365.44 3.138.170.136http/1.1topazblue.com:7081GET /old HTTP/1.0 0-2722990860/11/2498_ 1.5317141534567820.00.1056.02 3.94.40.182http/1.1sudburyjoggers.club:7081GET /events/tag/10-minutes/page/10/?tribe-bar-date=2024-07-04 H 0-2722990860/14/2511_ 1.689133432158280.00.1660.78 35.171.141.42http/1.1sudburyjoggers.club:7081GET /events/tag/10-minutes/page/10/?tribe-bar-date=2024-07-31 H 0-2722990860/11/2484_ 1.6636155133083640.00.16148.65 184.73.239.35http/1.1sudburyjoggers.club:7081GET /events/tag/10-minutes/page/10/?tribe-bar-date=2024-07-24 H 0-2722990860/15/2532_ 1.700234350590.00.2662.87 127.0.0.1http/1.1default:7080GET /.DS_Store HTTP/1.0 0-2722990860/11/2461_ 1.559229334015500.00.08170.24 3.215.59.93http/1.1sudburyjoggers.club:7081GET /events/tag/10-minutes/page/10/?tribe-bar-date=2024-07-06 H 0-2722990860/12/2459_ 1.690133787640.00.2059.49 127.0.0.1http/1.1default:7080GET /login.action HTTP/1.0 0-2722990860/12/2513_ 1.680033779470.00.5859.56 127.0.0.1http/1.1echoesinlight.co.uk:7081GET / HTTP/1.0 0-2722990860/12/2538_ 1.680134324200.00.1456.81 127.0.0.1http/1.1default:7080POST /php-cgi/php-cgi.exe?%ADd+cgi.force_redirect%3D0+%ADd+disa 0-2722990860/13/2485_ 1.700133148970.00.1365.28 127.0.0.1http/1.1default:7080GET /_all_dbs HTTP/1.0 0-2722990860/14/2494_ 1.700132282690.00.1461.55 127.0.0.1http/1.1default-149_255_58_98:7081GET /v2/_catalog HTTP/1.0 0-2722990860/15/2493_ 1.710234198220.00.1660.36 127.0.0.1http/1.1default:7080GET /info.php HTTP/1.0 0-2722990860/11/2499_ 1.690235393540.00.3459.96 127.0.0.1http/1.1default-149_255_58_98:7081GET /server HTTP/1.0 0-2722990860/10/2424_ 1.700232642800.00.1081.30 127.0.0.1http/1.1default:7080GET /.env HTTP/1.0 0-2722990860/12/2471_ 1.710133582390.00.1964.07 127.0.0.1http/1.1default:7080GET /config.json HTTP/1.0 0-2722990860/14/2463_ 1.710136326290.00.2661.18 127.0.0.1http/1.1default-149_255_58_98:7081GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 0-2722990860/12/2485_ 1.700235734580.00.1557.76 127.0.0.1http/1.1default:7080GET /s/8393e28353e2535323e2934313/_/;/META-INF/maven/com.atlass 0-2722990860/10/2476W 1.560035538330.00.20142.77 127.0.0.1http/1.1default-149_255_58_98:7081GET /server-status HTTP/1.0 0-2722990860/12/2471_ 1.6621335125660.00.3361.29 63.143.42.253http/1.1shadowcomputers.co.uk:7081GET / HTTP/1.0 1-20-0/0/1956. 0.005101451832073190.00.00140.16 216.244.66.201http/1.1cofltd.co.uk:7081GET /wp-content/uploads/2019/10/COF-CIRC-3.jpg HTTP/1.0 1-20-0/0/2013. 0.0051014127931445720.00.00130.65 40.65.153.97http/1.1sudburyjoggers.club:7081GET /depotcv.php HTTP/1.0 1-20-0/0/1993. 0.00510142329094060.00.0052.22 17.241.75.164http/1.1integratedesigns.co.uk:7081GET /the-importance-of-a-sturdy-retaining-wall/ HTTP/1.0 1-20-0/0/1935. 0.005101480627401730.00.0052.59 149.255.58.98http/1.1cofltd.co.uk:7081POST /wp-admin/admin-post.php HTTP/1.0 1-20-0/0/2008. 0.00510145231719520.00.0054.77 149.255.58.98http/1.1integratedesigns.co.uk:7081POST /wp-cron.php?doing_wp_cron=1734752633.80666804313659667968 1-20-0/0/1942. 0.0051014161627008720.00.0050.40 44.221.105.234http/1.1sudburyjoggers.club:7081GET /?eventDate=2027-08-22&eventDisplay=day&paged=2&post_type=t 1-20-0/0/2015. 0.0051014118231932960.00.0052.62 40.65.153.97http/1.1sudburyjoggers.club:7081GET /embed.php HTTP/1.0 1-20-0/0/1956. 0.0051014228116320.00.0050.56 146.190.20.113http/1.1default:7080GET / HTTP/1.0 1-20-0/0/2010. 0.0051014122829792130.00.0052.98 40.65.153.97http/1.1sudburyjoggers.club:7081GET /OthioNDwMEK.php HTTP/1.0 1-20-0/0/2005. 0.005101450128933590.00.0053.40 149.255.58.98http/1.1cofltd.co.uk:7081POST /wp-cron.php?doing_wp_cron=1734752739.71592807769775390625 1-20-0/0/1987. 0.00510142531331807650.00.0049.54 149.255.58.98http/1.1thelccgroup.co.uk:7081POST /?mailpoet_router&endpoint=cron_daemon&action=run&data=eyJ 1-20-0/0/1937. 0.0051014109226489570.00.0097.75 149.255.58.98http/1.1sudburyjoggers.club:7081POST /wp-cron.php?doing_wp_cron=1734752590.23708796501159667968 1-20-0/0/2035. 0.0051014180528310300.00.0050.62 5.102.173.71http/1.1cofltd.co.uk:7081GET /product/straight-floor-standing-screen/ HTTP/1.0 1-20-0/0/1982. 0.0051014191329903880.00.0043.40 34.196.114.170http/1.1sudburyjoggers.club:7081GET /?eventDate=2027-07-29&eventDisplay=day&paged=2&post_type=t 1-20-0/0/1927. 0.005101435526649450.00.0054.96 54.36.148.220http/1.1transfersdelsol.com:7081GET /transfer/malaga-airport-transfers-to-farajan/ HTTP/1.0 1-20-0/0/1925. 0.0051014162028215980.00.0047.74 34.236.135.14http/1.1sudburyjoggers.club:7081GET /?eventDate=2027-07-30&eventDisplay=day&paged=2&post_type=t 1-20-0/0/1999. 0.0051014489029164420.00.0051.24 149.255.58.98http/1.1sudburyjoggers.club:7081POST /wp-cron.php?doing_wp_cron=1734752760.40090894699096679687 1-20-0/0/1973. 0.0051014144427867880.00.0051.78 52.203.65.83http/1.1sudburyjoggers.club:7081GET /?eventDate=2027-08-05&eventDisplay=day&paged=2&post_type=t 1-20-0/0/2010. 0.0051014145430076670.00.0057.94 54.36.148.176http/1.1jesterlarf.com:7081GET /events/tag/comedy/2056-04/ HTTP/1.0 1-20-0/0/1939. <