The server-status page (usually /server-status
) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb31ea7bb996ea7bb996f96d6b30
Apache Status Apache Server Status for frisorart.dk Server Version: Apache/2.2.34 (Unix) PHP/5.2.17 Server Built: Oct 8 2019 02:07:04 Current Time: Tuesday, 30-May-2023 14:47:25 CEST Restart Time: Tuesday, 30-May-2023 06:10:06 CEST Parent Server Generation: 8 Server uptime: 8 hours 37 minutes 19 seconds Total accesses: 11087 - Total Traffic: 73.6 MB CPU Usage: u1.32 s.72 cu0 cs0 - .00657% CPU load .357 requests/sec - 2484 B/second - 6.8 kB/request 1 requests currently being processed, 30 idle workers _________________________W_____................................. ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqConnChildSlotClientVHostRequest 0-8198640/23/361_ 0.067020.00.501.62 81.19.232.89webhotel5.webhosting.dkGET / HTTP/1.0 1-8198650/23/360_ 0.077210.00.771.82 5.45.207.72webhotel5.webhosting.dkGET /archives/birgit-johnsen-rabbitsuit.htm HTTP/1.0 2-8198850/23/354_ 0.05000.00.313.02 46.101.103.192webhotel5.webhosting.dkGET /debug/default/view?panel=config HTTP/1.0 3-8198660/23/354_ 0.083330.00.081.28 172.71.102.143webhotel5.webhosting.dkGET / HTTP/1.0 4-8198670/23/354_ 0.062700.00.432.28 93.115.23.228webhotel5.webhosting.dkGET /faa-raad-til-at-rejse-i-din-studietid/ HTTP/1.0 5-8198870/23/351_ 0.06010.01.683.38 46.101.103.192webhotel5.webhosting.dkGET /.vscode/sftp.json HTTP/1.0 6-8198680/22/354_ 0.05920.00.411.87 81.19.232.89webhotel5.webhosting.dkGET / HTTP/1.0 7-8198690/23/353_ 0.07800.01.082.16 176.74.192.85webhotel5.webhosting.dkGET /ads.txt HTTP/1.0 8-8198880/23/356_ 0.05030.00.271.25 46.101.103.192webhotel5.webhosting.dkGET / HTTP/1.0 9-8198700/23/355_ 0.07800.00.541.60 176.74.192.85webhotel5.webhosting.dkGET /robots.txt HTTP/1.0 10-8198710/23/350_ 0.062810.00.401.27 167.248.133.189webhotel5.webhosting.dkGET /favicon.ico HTTP/1.0 11-8198720/23/350_ 0.072920.00.251.11 167.248.133.189webhotel5.webhosting.dkGET / HTTP/1.0 12-8198730/23/353_ 0.072220.00.421.40 34.212.33.221webhotel5.webhosting.dkGET / HTTP/1.0 13-8198740/23/353_ 0.07800.00.691.85 176.74.192.85webhotel5.webhosting.dkGET /humans.txt HTTP/1.0 14-8198750/23/349_ 0.06700.00.691.63 77.249.208.170webhotel5.webhosting.dkOPTIONS /UserData%24 HTTP/1.0 15-8198900/23/350_ 0.06000.00.010.86 46.101.103.192webhotel5.webhosting.dkGET /v2/_catalog HTTP/1.0 16-8198760/23/351_ 0.06830.00.942.13 176.74.192.85webhotel5.webhosting.dkGET / HTTP/1.0 17-8198770/23/351_ 0.05700.00.011.49 77.249.208.170webhotel5.webhosting.dkOPTIONS /UserData%24 HTTP/1.0 18-8198780/23/351_ 0.06700.00.011.57 77.249.208.170webhotel5.webhosting.dkOPTIONS /UserData%24 HTTP/1.0 19-8198790/23/352_ 0.06020.00.041.20 46.101.103.192webhotel5.webhosting.dkGET / HTTP/1.0 20-8198800/23/353_ 0.05000.00.3422.50 46.101.103.192webhotel5.webhosting.dkGET /about HTTP/1.0 21-8198810/23/349_ 0.06020.00.010.99 81.19.232.105webhotel5.webhosting.dkGET / HTTP/1.0 22-8198820/23/350_ 0.077320.00.011.12 54.214.126.24www.qwist.dkGET / HTTP/1.0 23-8198830/23/351_ 0.06710.00.021.02 77.249.208.170webhotel5.webhosting.dkOPTIONS /UserData%24 HTTP/1.0 24-8199030/23/351_ 0.05000.01.502.52 46.101.103.192webhotel5.webhosting.dkl/microsoft.exchange.ediscovery.exporttool.application HTTP/1.0 25-8199130/22/342W 0.05000.00.561.80 46.101.103.192webhotel5.webhosting.dkGET /server-status HTTP/1.0 26-8199510/22/341_ 0.056430.00.611.82 81.19.232.105webhotel5.webhosting.dkGET / HTTP/1.0 27-8199600/21/342_ 0.056220.00.681.69 131.153.143.50webhotel5.webhosting.dkGET / HTTP/1.0 28-8199650/22/349_ 0.063400.00.491.71 114.119.137.51webhotel5.webhosting.dkGET /robots.txt HTTP/1.0 29-8199660/22/345_ 0.062910.00.401.46 85.10.193.171webhotel5.webhosting.dkGET /faa-raad-til-at-rejse-i-din-studietid/ HTTP/1.0 30-8212970/19/334_ 0.052840.00.491.43 167.248.133.189webhotel5.webhosting.dkGET / HTTP/1.0 31-6-0/0/99. 0.08643800.00.000.36 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 32-3-0/0/47. 0.031724000.00.000.15 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 33-3-0/0/38. 0.011724000.00.000.05 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 34-0-0/0/34. 0.072803700.00.000.16 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot Apache Server at frisorart.dk Port 80
The server-status page (usually /server-status
) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb31ea7bb996ea7bb9969c4554c8
Apache Status Apache Server Status for frisorart.dk Server Version: Apache/2.2.34 (Unix) PHP/5.2.17 Server Built: Oct 8 2019 02:07:04 Current Time: Tuesday, 30-May-2023 14:47:25 CEST Restart Time: Tuesday, 30-May-2023 06:10:06 CEST Parent Server Generation: 8 Server uptime: 8 hours 37 minutes 19 seconds Total accesses: 11102 - Total Traffic: 73.6 MB CPU Usage: u1.37 s.73 cu0 cs0 - .00677% CPU load .358 requests/sec - 2484 B/second - 6.8 kB/request 1 requests currently being processed, 30 idle workers _____________W_________________................................. ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqConnChildSlotClientVHostRequest 0-8198640/24/362_ 0.07000.00.511.62 46.101.103.192webhotel5.webhosting.dkGET /login.action HTTP/1.0 1-8198650/24/361_ 0.07020.00.771.82 81.19.232.105webhotel5.webhosting.dkGET / HTTP/1.0 2-8198850/23/354_ 0.05000.00.313.02 46.101.103.192webhotel5.webhosting.dkGET /debug/default/view?panel=config HTTP/1.0 3-8198660/24/355_ 0.08000.00.081.28 81.19.232.105webhotel5.webhosting.dkGET /about HTTP/1.0 4-8198670/24/355_ 0.07000.00.432.28 81.19.232.105webhotel5.webhosting.dkGET /v2/_catalog HTTP/1.0 5-8198870/23/351_ 0.06010.01.683.38 46.101.103.192webhotel5.webhosting.dkGET /.vscode/sftp.json HTTP/1.0 6-8198680/23/355_ 0.06000.00.411.87 81.19.232.105webhotel5.webhosting.dkl/microsoft.exchange.ediscovery.exporttool.application HTTP/1.0 7-8198690/23/353_ 0.07800.01.082.16 176.74.192.85webhotel5.webhosting.dkGET /ads.txt HTTP/1.0 8-8198880/23/356_ 0.05030.00.271.25 46.101.103.192webhotel5.webhosting.dkGET / HTTP/1.0 9-8198700/24/356_ 0.07000.00.541.60 46.101.103.192webhotel5.webhosting.dkGET /telescope/requests HTTP/1.0 10-8198710/24/351_ 0.06010.00.401.27 46.101.103.192webhotel5.webhosting.dkven/com.atlassian.jira/jira-webapp-dist/pom.properties HTTP/1.0 11-8198720/24/351_ 0.08000.00.251.11 81.19.232.105webhotel5.webhosting.dkGET /debug/default/view?panel=config HTTP/1.0 12-8198730/24/354_ 0.07010.00.421.40 46.101.103.192webhotel5.webhosting.dkGET /config.json HTTP/1.0 13-8198740/23/353W 0.07000.00.691.85 81.19.232.105webhotel5.webhosting.dkGET /server-status HTTP/1.0 14-8198750/23/349_ 0.06700.00.691.63 77.249.208.170webhotel5.webhosting.dkOPTIONS /UserData%24 HTTP/1.0 15-8198900/23/350_ 0.06000.00.010.86 46.101.103.192webhotel5.webhosting.dkGET /v2/_catalog HTTP/1.0 16-8198760/23/351_ 0.06830.00.942.13 176.74.192.85webhotel5.webhosting.dkGET / HTTP/1.0 17-8198770/23/351_ 0.05800.00.011.49 77.249.208.170webhotel5.webhosting.dkOPTIONS /UserData%24 HTTP/1.0 18-8198780/23/351_ 0.06800.00.011.57 77.249.208.170webhotel5.webhosting.dkOPTIONS /UserData%24 HTTP/1.0 19-8198790/23/352_ 0.06020.00.041.20 46.101.103.192webhotel5.webhosting.dkGET / HTTP/1.0 20-8198800/23/353_ 0.05000.00.3422.50 46.101.103.192webhotel5.webhosting.dkGET /about HTTP/1.0 21-8198810/23/349_ 0.06020.00.010.99 81.19.232.105webhotel5.webhosting.dkGET / HTTP/1.0 22-8198820/23/350_ 0.077320.00.011.12 54.214.126.24www.qwist.dkGET / HTTP/1.0 23-8198830/23/351_ 0.06710.00.021.02 77.249.208.170webhotel5.webhosting.dkOPTIONS /UserData%24 HTTP/1.0 24-8199030/23/351_ 0.05000.01.502.52 46.101.103.192webhotel5.webhosting.dkl/microsoft.exchange.ediscovery.exporttool.application HTTP/1.0 25-8199130/23/343_ 0.05010.00.561.81 46.101.103.192webhotel5.webhosting.dkGET /server-status HTTP/1.0 26-8199510/23/342_ 0.06010.00.611.82 46.101.103.192webhotel5.webhosting.dkGET /_all_dbs HTTP/1.0 27-8199600/22/343_ 0.06000.00.681.69 81.19.232.105webhotel5.webhosting.dkGET /.vscode/sftp.json HTTP/1.0 28-8199650/23/350_ 0.06010.00.491.71 46.101.103.192webhotel5.webhosting.dkGET /.DS_Store HTTP/1.0 29-8199660/23/346_ 0.06010.00.401.46 46.101.103.192webhotel5.webhosting.dkGET /.env HTTP/1.0 30-8212970/20/335_ 0.05010.00.491.43 46.101.103.192webhotel5.webhosting.dkGET /.git/config HTTP/1.0 31-6-0/0/99. 0.08643800.00.000.36 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 32-3-0/0/47. 0.031724000.00.000.15 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 33-3-0/0/38. 0.011724000.00.000.05 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 34-0-0/0/34. 0.072803700.00.000.16 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot Apache Server at frisorart.dk Port 443