The server-status page (usually /server-status
) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb315054b0a55054b0a5d2c7710f
Apache Status Apache Server Status for www.hmtest.site (via 5.61.29.113) Server Version: Apache/2.4.52 (Ubuntu) mod_perl/2.0.12 Perl/v5.34.0 Server MPM: prefork Server Built: 2023-03-01T22:43:55 Current Time: Monday, 12-Jun-2023 08:48:46 UTC Restart Time: Saturday, 27-May-2023 05:27:19 UTC Parent Server Config. Generation: 17 Parent Server MPM Generation: 16 Server uptime: 16 days 3 hours 21 minutes 26 seconds Server load: 0.14 0.03 0.01 Total accesses: 8628 - Total Traffic: 737.8 MB - Total Duration: 4064900 CPU Usage: u99.59 s98.71 cu761.16 cs96.86 - .0757% CPU load .00619 requests/sec - 554 B/second - 87.6 kB/request - 471.129 ms/request 2 requests currently being processed, 5 idle workers _____W....W..................................................... ................................................................ ...................... Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-161055290/36/961_ 1.960303711310.00.2221.41 185.215.232.161http/1.1muitest.ir:80GET /s/232313e2433323e2334313e2538313/_/;/META-INF/maven/com.at 1-161055350/36/884_ 2.240454444130.00.2011.86 185.215.232.163http/1.1muitest.ir:80GET /.git/config HTTP/1.1 2-161055270/37/926_ 1.920518372120.00.39162.94 185.215.232.161http/1.1muitest.ir:80GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 3-161055360/33/724_ 2.001633158380.00.2778.14 185.215.232.163http/1.1muitest.ir:80GET /.env HTTP/1.1 4-161055300/39/756_ 2.321704677730.00.33155.97 185.215.232.163http/1.1muitest.ir:80GET /v2/_catalog HTTP/1.1 5-161055280/34/844W 1.59002256920.00.208.35 185.215.232.162http/1.1muitest.ir:80GET /config.json HTTP/1.1 6-15-0/0/697. 0.0031722647742810.00.00112.56 159.224.242.253http/1.1muitest.ir:80GET http://chek.zennolab.com/proxy.php HTTP/1.1 7-13-0/0/484. 0.00265086201967460.00.008.79 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 8-13-0/0/321. 0.0026508320889010.00.0063.84 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 9-13-0/0/344. 0.002650878599570.00.0052.97 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 10-161055310/37/343W 2.1600768740.00.2150.58 185.215.232.161http/1.1muitest.ir:80GET /server-status HTTP/1.1 11-13-0/0/204. 0.0020452321326140.00.002.53 109.237.98.226http/1.1muitest.ir:80\x16\x03\x01\x01H\x01 12-13-0/0/284. 0.00204523110445040.00.002.78 213.141.129.8http/1.1muitest.ir:80GET http://check2.zennolab.com/proxy.php HTTP/1.1 13-13-0/0/263. 0.0020452367397870.00.001.58 62.173.140.209http/1.1 14-13-0/0/161. 0.0020452358257230.00.000.91 213.141.129.8http/1.1muitest.ir:80GET http://check2.zennolab.com/proxy.php HTTP/1.1 15-12-0/0/119. 0.0033455588175840.00.000.77 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 16-12-0/0/26. 0.003345547743450.00.000.12 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 17-12-0/0/86. 0.0029092245113930.00.000.48 39.79.72.46http/1.1muitest.ir:80\x16\x03\x03 18-10-0/0/40. 0.0049171010260220.00.000.20 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 19-10-0/0/19. 0.004917097737870.00.000.10 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 20-10-0/0/40. 0.0049170812263840.00.000.21 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 21-10-0/0/21. 0.004917076533290.00.000.26 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 22-10-0/0/45. 0.0046372212257700.00.000.25 195.239.14.26http/1.1muitest.ir:80GET /proxy.php HTTP/1.1 23-10-0/0/27. 0.004637227333960.00.000.14 188.187.62.225http/1.1muitest.ir:80GET http://chekfast.zennolab.com/proxy.php HTTP/1.1 24-10-0/0/6. 0.004917066810090.00.000.00 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 25-10-0/0/2. 0.00491705773050.00.000.00 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 26-10-0/0/1. 0.00491704581160.00.000.00 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request DurSum of milliseconds required to process all requests ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot Apache/2.4.52 (Ubuntu) Server at www.hmtest.site Port 80
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb315054b0a55054b0a57703b411
Apache Status Apache Server Status for www.hmtest.site (via 5.61.29.113) Server Version: Apache/2.4.52 (Ubuntu) mod_perl/2.0.12 Perl/v5.34.0 Server MPM: prefork Server Built: 2023-03-01T22:43:55 Current Time: Monday, 12-Jun-2023 08:48:42 UTC Restart Time: Saturday, 27-May-2023 05:27:19 UTC Parent Server Config. Generation: 17 Parent Server MPM Generation: 16 Server uptime: 16 days 3 hours 21 minutes 22 seconds Server load: 0.06 0.02 0.00 Total accesses: 8596 - Total Traffic: 737.6 MB - Total Duration: 4061846 CPU Usage: u98.24 s98.62 cu761.16 cs96.86 - .0756% CPU load .00616 requests/sec - 554 B/second - 87.9 kB/request - 472.527 ms/request 1 requests currently being processed, 6 idle workers _W____...._..................................................... ................................................................ ...................... Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-161055290/31/956_ 1.770543707420.00.1821.38 185.215.232.161http/1.1muitest.ir:80GET / HTTP/1.1 1-161055350/31/879W 2.05004440090.00.1711.83 185.228.238.6http/1.1muitest.ir:80GET /server-status HTTP/1.1 2-161055270/32/921_ 1.68068366970.00.36162.91 185.228.238.5http/1.1muitest.ir:80GET /server-status HTTP/1.1 3-161055360/28/719_ 1.780773153650.00.2478.10 185.215.232.162http/1.1muitest.ir:80GET /about HTTP/1.1 4-161055300/35/752_ 2.120674673660.00.30155.95 185.228.238.5http/1.1muitest.ir:80GET /login.action HTTP/1.1 5-161055280/30/840_ 1.410492253090.00.178.32 185.228.238.5http/1.1muitest.ir:80GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 6-15-0/0/697. 0.0031719647742810.00.00112.56 159.224.242.253http/1.1muitest.ir:80GET http://chek.zennolab.com/proxy.php HTTP/1.1 7-13-0/0/484. 0.00265082201967460.00.008.79 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 8-13-0/0/321. 0.0026507920889010.00.0063.84 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 9-13-0/0/344. 0.002650838599570.00.0052.97 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 10-161055310/33/339_ 1.94060763910.00.1950.56 185.215.232.160http/1.1muitest.ir:80GET /debug/default/view?panel=config HTTP/1.1 11-13-0/0/204. 0.0020451921326140.00.002.53 109.237.98.226http/1.1muitest.ir:80\x16\x03\x01\x01H\x01 12-13-0/0/284. 0.00204519110445040.00.002.78 213.141.129.8http/1.1muitest.ir:80GET http://check2.zennolab.com/proxy.php HTTP/1.1 13-13-0/0/263. 0.0020451967397870.00.001.58 62.173.140.209http/1.1 14-13-0/0/161. 0.0020451958257230.00.000.91 213.141.129.8http/1.1muitest.ir:80GET http://check2.zennolab.com/proxy.php HTTP/1.1 15-12-0/0/119. 0.0033455288175840.00.000.77 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 16-12-0/0/26. 0.003345517743450.00.000.12 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 17-12-0/0/86. 0.0029091945113930.00.000.48 39.79.72.46http/1.1muitest.ir:80\x16\x03\x03 18-10-0/0/40. 0.0049170610260220.00.000.20 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 19-10-0/0/19. 0.004917057737870.00.000.10 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 20-10-0/0/40. 0.0049170412263840.00.000.21 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 21-10-0/0/21. 0.004917036533290.00.000.26 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 22-10-0/0/45. 0.0046371912257700.00.000.25 195.239.14.26http/1.1muitest.ir:80GET /proxy.php HTTP/1.1 23-10-0/0/27. 0.004637197333960.00.000.14 188.187.62.225http/1.1muitest.ir:80GET http://chekfast.zennolab.com/proxy.php HTTP/1.1 24-10-0/0/6. 0.004917026810090.00.000.00 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 25-10-0/0/2. 0.00491701773050.00.000.00 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 26-10-0/0/1. 0.00491700581160.00.000.00 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request DurSum of milliseconds required to process all requests ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot Apache/2.4.52 (Ubuntu) Server at www.hmtest.site Port 80
The server-status page (usually /server-status
) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb314adfaec64adfaec67bb1b503
Apache Status Apache Server Status for hmtest.site (via 5.61.29.113) Server Version: Apache/2.4.52 (Ubuntu) mod_perl/2.0.12 Perl/v5.34.0 Server MPM: prefork Server Built: 2023-03-01T22:43:55 Current Time: Monday, 12-Jun-2023 08:48:43 UTC Restart Time: Saturday, 27-May-2023 05:27:19 UTC Parent Server Config. Generation: 17 Parent Server MPM Generation: 16 Server uptime: 16 days 3 hours 21 minutes 23 seconds Server load: 0.06 0.02 0.00 Total accesses: 8607 - Total Traffic: 737.6 MB - Total Duration: 4062791 CPU Usage: u98.64 s98.67 cu761.16 cs96.86 - .0757% CPU load .00617 requests/sec - 554 B/second - 87.8 kB/request - 472.033 ms/request 3 requests currently being processed, 4 idle workers ____WW....W..................................................... ................................................................ ...................... Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-161055290/33/958_ 1.860533709130.00.2021.39 185.215.232.160http/1.1muitest.ir:80GET /about HTTP/1.1 1-161055350/33/881_ 2.100494441240.00.1811.84 185.215.232.162http/1.1muitest.ir:80GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 2-161055270/34/923_ 1.790798369200.00.38162.92 185.228.238.5http/1.1muitest.ir:80GET /.DS_Store HTTP/1.1 3-161055360/30/721_ 1.860543155380.00.2578.12 185.228.238.5http/1.1muitest.ir:80GET /.env HTTP/1.1 4-161055300/36/753W 2.18004674730.00.31155.96 185.215.232.161http/1.1muitest.ir:80GET /server-status HTTP/1.1 5-161055280/31/841W 1.43002253710.00.188.33 185.228.238.4http/1.1muitest.ir:80GET /.git/config HTTP/1.1 6-15-0/0/697. 0.0031720647742810.00.00112.56 159.224.242.253http/1.1muitest.ir:80GET http://chek.zennolab.com/proxy.php HTTP/1.1 7-13-0/0/484. 0.00265083201967460.00.008.79 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 8-13-0/0/321. 0.0026508020889010.00.0063.84 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 9-13-0/0/344. 0.002650848599570.00.0052.97 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 10-161055310/34/340W 1.9800764840.00.1950.57 185.228.238.6http/1.1muitest.ir:80GET /.env HTTP/1.1 11-13-0/0/204. 0.0020452021326140.00.002.53 109.237.98.226http/1.1muitest.ir:80\x16\x03\x01\x01H\x01 12-13-0/0/284. 0.00204520110445040.00.002.78 213.141.129.8http/1.1muitest.ir:80GET http://check2.zennolab.com/proxy.php HTTP/1.1 13-13-0/0/263. 0.0020452067397870.00.001.58 62.173.140.209http/1.1 14-13-0/0/161. 0.0020452058257230.00.000.91 213.141.129.8http/1.1muitest.ir:80GET http://check2.zennolab.com/proxy.php HTTP/1.1 15-12-0/0/119. 0.0033455388175840.00.000.77 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 16-12-0/0/26. 0.003345527743450.00.000.12 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 17-12-0/0/86. 0.0029092045113930.00.000.48 39.79.72.46http/1.1muitest.ir:80\x16\x03\x03 18-10-0/0/40. 0.0049170710260220.00.000.20 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 19-10-0/0/19. 0.004917067737870.00.000.10 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 20-10-0/0/40. 0.0049170512263840.00.000.21 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 21-10-0/0/21. 0.004917046533290.00.000.26 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 22-10-0/0/45. 0.0046372012257700.00.000.25 195.239.14.26http/1.1muitest.ir:80GET /proxy.php HTTP/1.1 23-10-0/0/27. 0.004637207333960.00.000.14 188.187.62.225http/1.1muitest.ir:80GET http://chekfast.zennolab.com/proxy.php HTTP/1.1 24-10-0/0/6. 0.004917036810090.00.000.00 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 25-10-0/0/2. 0.00491702773050.00.000.00 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 26-10-0/0/1. 0.00491701581160.00.000.00 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request DurSum of milliseconds required to process all requests ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot Apache/2.4.52 (Ubuntu) Server at hmtest.site Port 80
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb314adfaec64adfaec67b003205
Apache Status Apache Server Status for hmtest.site (via 5.61.29.113) Server Version: Apache/2.4.52 (Ubuntu) mod_perl/2.0.12 Perl/v5.34.0 Server MPM: prefork Server Built: 2023-03-01T22:43:55 Current Time: Monday, 12-Jun-2023 08:48:41 UTC Restart Time: Saturday, 27-May-2023 05:27:19 UTC Parent Server Config. Generation: 17 Parent Server MPM Generation: 16 Server uptime: 16 days 3 hours 21 minutes 22 seconds Server load: 0.06 0.02 0.00 Total accesses: 8592 - Total Traffic: 737.5 MB - Total Duration: 4061480 CPU Usage: u98.07 s98.61 cu761.16 cs96.86 - .0756% CPU load .00616 requests/sec - 554 B/second - 87.9 kB/request - 472.705 ms/request 1 requests currently being processed, 6 idle workers __W___...._..................................................... ................................................................ ...................... Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-161055290/31/956_ 1.770543707420.00.1821.38 185.215.232.161http/1.1muitest.ir:80GET / HTTP/1.1 1-161055350/31/879_ 2.050824440090.00.1711.83 185.228.238.4http/1.1muitest.ir:80GET /v2/_catalog HTTP/1.1 2-161055270/31/920W 1.67008366840.00.36162.90 185.228.238.5http/1.1muitest.ir:80GET /server-status HTTP/1.1 3-161055360/28/719_ 1.780773153650.00.2478.10 185.215.232.162http/1.1muitest.ir:80GET /about HTTP/1.1 4-161055300/34/751_ 2.060814672310.00.30155.94 185.228.238.5http/1.1muitest.ir:80GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 5-161055280/29/839_ 1.360532252100.00.178.32 185.215.232.161http/1.1muitest.ir:80GET /.vscode/sftp.json HTTP/1.1 6-15-0/0/697. 0.0031718647742810.00.00112.56 159.224.242.253http/1.1muitest.ir:80GET http://chek.zennolab.com/proxy.php HTTP/1.1 7-13-0/0/484. 0.00265082201967460.00.008.79 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 8-13-0/0/321. 0.0026507920889010.00.0063.84 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 9-13-0/0/344. 0.002650838599570.00.0052.97 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 10-161055310/32/338_ 1.88074762720.00.1850.55 185.228.238.5http/1.1muitest.ir:80GET /debug/default/view?panel=config HTTP/1.1 11-13-0/0/204. 0.0020451921326140.00.002.53 109.237.98.226http/1.1muitest.ir:80\x16\x03\x01\x01H\x01 12-13-0/0/284. 0.00204519110445040.00.002.78 213.141.129.8http/1.1muitest.ir:80GET http://check2.zennolab.com/proxy.php HTTP/1.1 13-13-0/0/263. 0.0020451967397870.00.001.58 62.173.140.209http/1.1 14-13-0/0/161. 0.0020451958257230.00.000.91 213.141.129.8http/1.1muitest.ir:80GET http://check2.zennolab.com/proxy.php HTTP/1.1 15-12-0/0/119. 0.0033455188175840.00.000.77 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 16-12-0/0/26. 0.003345507743450.00.000.12 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 17-12-0/0/86. 0.0029091845113930.00.000.48 39.79.72.46http/1.1muitest.ir:80\x16\x03\x03 18-10-0/0/40. 0.0049170610260220.00.000.20 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 19-10-0/0/19. 0.004917057737870.00.000.10 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 20-10-0/0/40. 0.0049170412263840.00.000.21 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 21-10-0/0/21. 0.004917036533290.00.000.26 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 22-10-0/0/45. 0.0046371812257700.00.000.25 195.239.14.26http/1.1muitest.ir:80GET /proxy.php HTTP/1.1 23-10-0/0/27. 0.004637187333960.00.000.14 188.187.62.225http/1.1muitest.ir:80GET http://chekfast.zennolab.com/proxy.php HTTP/1.1 24-10-0/0/6. 0.004917026810090.00.000.00 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 25-10-0/0/2. 0.00491701773050.00.000.00 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 26-10-0/0/1. 0.00491700581160.00.000.00 ::1http/1.1muitest.ir:80OPTIONS * HTTP/1.0 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request DurSum of milliseconds required to process all requests ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot Apache/2.4.52 (Ubuntu) Server at hmtest.site Port 80