The server-status page (usually /server-status) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb310db3a8af0db3a8af9934648e
Apache Status Apache Server Status for kocexchange.com (via 103.186.101.162) Server Version: Apache/2.4.29 (Ubuntu) mod_fcgid/2.3.9 OpenSSL/1.1.1 Server MPM: prefork Server Built: 2022-06-23T12:51:37 Current Time: Thursday, 15-Dec-2022 03:54:31 +07 Restart Time: Monday, 28-Nov-2022 15:07:03 +07 Parent Server Config. Generation: 113 Parent Server MPM Generation: 112 Server uptime: 16 days 12 hours 47 minutes 28 seconds Server load: 0.53 0.66 0.71 Total accesses: 405663 - Total Traffic: 5.3 GB CPU Usage: u2080.17 s1890.6 cu0 cs0 - .278% CPU load .284 requests/sec - 4020 B/second - 13.8 kB/request 1 requests currently being processed, 9 idle workers ______._W_._.................................................... ................................................................ ...................... Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqConnChildSlotClientProtocolVHostRequest 0-11286240/3947/41387_ 86.59000.028.64532.48 45.79.116.239http/1.1sv03.congdulieu.com:8080GET /.env HTTP/1.0 1-112304130/1646/38979_ 48.54000.012.08507.83 45.33.108.188http/1.1sv03.congdulieu.com:8080GET /.env HTTP/1.0 2-112102260/10649/41994_ 313.93010.079.81523.93 45.79.116.239http/1.1sv03.congdulieu.com:8080GET /server-status HTTP/1.0 3-112260910/4280/36768_ 107.65000.033.95540.83 2a03:b0c0:1:d0::d0a:a001http/1.1sv03.congdulieu.com:8080GET / HTTP/1.0 4-11294640/3946/39184_ 90.1102560.028.57518.07 51.210.182.66http/1.1sieuthidenchum.com:8443HEAD /en-chum/en-chum-chau-au/en-chum-chao-thy-tinh/ HTTP/1.0 5-112102230/10657/38266_ 305.30000.080.73462.15 45.79.116.239http/1.1sv03.congdulieu.com:8080GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 6-112-0/0/37692. 215.51146772710.00.00519.41 103.186.101.162http/1.1 7-112111210/10634/38484_ 316.56000.080.56504.37 45.79.116.239http/1.1sv03.congdulieu.com:8080GET /.DS_Store HTTP/1.0 8-112123040/10617/23053W 301.22000.079.72277.80 45.33.108.188http/1.1sv03.congdulieu.com:8080GET /server-status HTTP/1.0 9-112123070/10599/26372_ 314.00000.079.25317.67 45.33.108.188http/1.1sv03.congdulieu.com:8080GET /.DS_Store HTTP/1.0 10-112-0/0/15046. 253.3151267690.00.00174.34 103.186.101.162http/1.1 11-112260940/4256/8224_ 108.12000.032.31109.56 45.79.116.239http/1.1sv03.congdulieu.com:8080GET /s/039313e2137313e27363e2237313/_/;/META-INF/maven/com.atla 12-78-0/0/2233. 0.794587345970.00.0039.31 103.186.101.162http/1.1 13-78-0/0/823. 47.094587366830.00.0021.15 103.186.101.162http/1.1 14-78-0/0/301. 22.7845872149740.00.0015.66 103.186.101.162http/1.1 15-78-0/0/90. 2.624587388490.00.0011.21 103.186.101.162http/1.1 16-78-0/0/606. 26.9245875512820.00.0016.05 103.186.101.162http/1.1 17-78-0/0/390. 48.714587306660.00.0017.78 103.186.101.162http/1.1 18-86-0/0/6143. 0.0214473000.00.00109.84 185.3.94.68http/1.1travietjapan.com:8080GET /server-status HTTP/1.0 19-78-0/0/47. 4.454587356860.00.006.51 103.186.101.162http/1.1 20-78-0/0/1614. 264.983890494580.00.0036.38 103.186.101.162http/1.1 21-78-0/0/1137. 177.724207794610.00.0023.77 103.186.101.162http/1.1 22-78-0/0/63. 24.244587246090.00.009.30 103.186.101.162http/1.1 23-79-0/0/4057. 319.90258252780.00.0089.71 103.186.101.162http/1.1 24-78-0/0/78. 10.954587278920.00.0011.61 103.186.101.162http/1.1 25-78-0/0/68. 35.7445872267300.00.009.84 103.186.101.162http/1.1 26-78-0/0/76. 46.194587267080.00.0010.89 103.186.101.162http/1.1 27-78-0/0/2414. 444.12336562130.00.0049.25 128.14.134.134http/1.1sv03.congdulieu.com:8443GET / HTTP/1.0 28-78-0/0/53. 19.254587316640.00.007.58 103.186.101.162http/1.1 29-78-0/0/5. 1.634587648620.00.000.81 103.186.101.162http/1.1 30-78-0/0/16. 11.834587286900.00.002.25 103.186.101.162http/1.1 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot mod_fcgid status: Total FastCGI processes: 0 SSL/TLS Session Cache Status: cache type: SHMCB, shared memory: 512000 bytes, current entries: 0subcaches: 32, indexes per subcache: 88index usage: 0%, cache usage: 0%total entries stored since starting: 0total entries replaced since starting: 0total entries expired since starting: 0total (pre-expiry) entries scrolled out of the cache: 0total retrieves since starting: 0 hit, 0 misstotal removes since starting: 0 hit, 2 miss
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb310db3a8af0db3a8aff2da4711
Apache Status Apache Server Status for kocexchange.com (via 103.186.101.162) Server Version: Apache/2.4.29 (Ubuntu) mod_fcgid/2.3.9 OpenSSL/1.1.1 Server MPM: prefork Server Built: 2022-06-23T12:51:37 Current Time: Thursday, 15-Dec-2022 03:54:30 +07 Restart Time: Monday, 28-Nov-2022 15:07:03 +07 Parent Server Config. Generation: 113 Parent Server MPM Generation: 112 Server uptime: 16 days 12 hours 47 minutes 27 seconds Server load: 0.53 0.66 0.71 Total accesses: 405652 - Total Traffic: 5.3 GB CPU Usage: u2080.17 s1890.6 cu0 cs0 - .278% CPU load .284 requests/sec - 4020 B/second - 13.8 kB/request 3 requests currently being processed, 7 idle workers _WW_W_.___._.................................................... ................................................................ ...................... Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqConnChildSlotClientProtocolVHostRequest 0-11286240/3946/41386_ 86.59010.028.64532.48 2a03:b0c0:1:d0::d13:b001http/1.1sv03.congdulieu.com:8080GET / HTTP/1.0 1-112304131/1645/38978C 48.54002.012.08507.82 45.79.116.239http/1.1sv03.congdulieu.com:8080GET /.git/config HTTP/1.0 2-112102260/10648/41993W 313.93000.079.80523.92 45.79.116.239http/1.1sv03.congdulieu.com:8080GET /server-status HTTP/1.0 3-112260910/4279/36767_ 107.65000.033.95540.83 45.79.116.239http/1.1sv03.congdulieu.com:8080PUT /api/v2/cmdb/system/admin/admin HTTP/1.0 4-11294640/3945/39183W 90.11000.028.56518.07 51.210.182.66http/1.1sieuthidenchum.com:8443HEAD /en-chum/en-chum-chau-au/en-chum-chao-thy-tinh/ HTTP/1.0 5-112102230/10656/38265_ 305.30000.080.73462.15 45.79.116.239http/1.1sv03.congdulieu.com:8080GET /telescope/requests HTTP/1.0 6-112-0/0/37692. 215.51146772710.00.00519.41 103.186.101.162http/1.1 7-112111210/10633/38483_ 316.56000.080.56504.36 45.79.116.239http/1.1sv03.congdulieu.com:8080GET / HTTP/1.0 8-112123040/10616/23052R 301.22010.079.72277.80 103.186.101.162http/1.1 9-112123070/10598/26371_ 314.00000.079.25317.67 45.79.116.239http/1.1sv03.congdulieu.com:8080GET /info.php HTTP/1.0 10-112-0/0/15046. 253.3151267690.00.00174.34 103.186.101.162http/1.1 11-112260940/4255/8223_ 108.12010.032.31109.56 45.79.116.239http/1.1sv03.congdulieu.com:8080GET /?rest_route=/wp/v2/users/ HTTP/1.0 12-78-0/0/2233. 0.794587335970.00.0039.31 103.186.101.162http/1.1 13-78-0/0/823. 47.094587356830.00.0021.15 103.186.101.162http/1.1 14-78-0/0/301. 22.7845872049740.00.0015.66 103.186.101.162http/1.1 15-78-0/0/90. 2.624587378490.00.0011.21 103.186.101.162http/1.1 16-78-0/0/606. 26.9245875412820.00.0016.05 103.186.101.162http/1.1 17-78-0/0/390. 48.714587296660.00.0017.78 103.186.101.162http/1.1 18-86-0/0/6143. 0.0214472900.00.00109.84 185.3.94.68http/1.1travietjapan.com:8080GET /server-status HTTP/1.0 19-78-0/0/47. 4.454587346860.00.006.51 103.186.101.162http/1.1 20-78-0/0/1614. 264.983890484580.00.0036.38 103.186.101.162http/1.1 21-78-0/0/1137. 177.724207794610.00.0023.77 103.186.101.162http/1.1 22-78-0/0/63. 24.244587236090.00.009.30 103.186.101.162http/1.1 23-79-0/0/4057. 319.90258252780.00.0089.71 103.186.101.162http/1.1 24-78-0/0/78. 10.954587268920.00.0011.61 103.186.101.162http/1.1 25-78-0/0/68. 35.7445872167300.00.009.84 103.186.101.162http/1.1 26-78-0/0/76. 46.194587257080.00.0010.89 103.186.101.162http/1.1 27-78-0/0/2414. 444.12336562130.00.0049.25 128.14.134.134http/1.1sv03.congdulieu.com:8443GET / HTTP/1.0 28-78-0/0/53. 19.254587306640.00.007.58 103.186.101.162http/1.1 29-78-0/0/5. 1.634587638620.00.000.81 103.186.101.162http/1.1 30-78-0/0/16. 11.834587276900.00.002.25 103.186.101.162http/1.1 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot mod_fcgid status: Total FastCGI processes: 0 SSL/TLS Session Cache Status: cache type: SHMCB, shared memory: 512000 bytes, current entries: 0subcaches: 32, indexes per subcache: 88index usage: 0%, cache usage: 0%total entries stored since starting: 0total entries replaced since starting: 0total entries expired since starting: 0total (pre-expiry) entries scrolled out of the cache: 0total retrieves since starting: 0 hit, 0 misstotal removes since starting: 0 hit, 2 miss