The server-status page (usually /server-status) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb31531c1093531c109396d094a4
Apache Status Apache Server Status for mail.pizzeriamimo.nl (via 46.17.7.199) Server Version: Apache/2.4.51 (Unix) OpenSSL/1.0.1e-fips Server MPM: event Server Built: Oct 8 2021 01:40:09 Current Time: Thursday, 23-Jun-2022 00:18:37 CEST Restart Time: Thursday, 23-Jun-2022 00:17:14 CEST Parent Server Config. Generation: 215 Parent Server MPM Generation: 214 Server uptime: 1 minute 22 seconds Server load: 2.10 1.98 1.86 Total accesses: 459 - Total Traffic: 2.5 MB - Total Duration: 157869 CPU Usage: u340.46 s847.44 cu377937 cs571396 - 1160000% CPU load 5.6 requests/sec - 30.8 kB/second - 5.5 kB/request - 343.941 ms/request 9 requests currently being processed, 375 idle workers SlotPIDStoppingConnections ThreadsAsync connections totalacceptingbusyidlewritingkeep-aliveclosing 010460no0yes064000 110461no0yes064000 210463no2yes163011 310464no1yes163000 410472no0yes658000 510481no0yes163000 Sum603 9375011 ________________________________________________________________ ________________________________________________________________ ____W___________________________________________________________ _______________________________________________________________R ________W________________________W_________W_W_L__L_____________ ______________________________________________________________R_ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-214104600/1/1_ 0.1381550.00.000.00 207.154.204.175http/1.1localhost:443GET /s/34362e31372e372e313939/_/;/META-INF/maven/com.atlassian. 0-214104600/1/1_ 0.0981220.00.000.00 206.81.18.165http/1.1www.davetiye.nl:443GET /.git/config HTTP/1.1 0-214104600/1/1_ 0.108111110.00.000.00 206.81.18.165http/1.1www.davetiye.nl:443GET /server-status HTTP/1.1 0-214104600/1/1_ 0.2879220.00.000.00 164.92.240.121http/1.1localhost:443GET /.DS_Store HTTP/1.1 0-214104600/1/1_ 0.2181220.00.000.00 206.81.18.165http/1.1www.davetiye.nl:443GET /login.action HTTP/1.1 0-214104600/1/1_ 0.198147470.00.000.00 207.154.204.175http/1.1localhost:443GET /telescope/requests HTTP/1.1 0-214104600/1/1_ 0.2680220.00.000.00 68.183.75.40http/1.1www.davetiye.nl:80GET / HTTP/1.1 0-214104600/1/1_ 0.3743220.00.000.00 162.55.86.60http/1.1www.faraovlaardingen.nl:80GET /robots.txt HTTP/1.1 0-214104600/2/2_ 0.1444350.00.010.01 3.90.48.206http/1.1 0-214104600/1/1_ 0.0647220.00.000.00 3.90.48.206http/1.1 0-214104600/1/1_ 0.0159220.00.000.00 3.90.48.206http/1.1 0-214104600/1/1_ 0.2461440.00.000.00 3.90.48.206http/1.1 0-214104600/1/1_ 0.206215150.00.000.00 3.90.48.206http/1.1 0-214104600/1/1_ 0.1962880.00.000.00 3.90.48.206http/1.1 0-214104600/1/1_ 0.1864880.00.000.00 3.90.48.206http/1.1 0-214104600/1/1_ 0.1368220.00.000.00 3.90.48.206http/1.1 0-214104600/1/1_ 0.1529330.00.000.00 3.90.48.206http/1.1 0-214104600/1/1_ 0.490110.00.000.00 212.71.232.224http/1.1localhost:80GET /info.php HTTP/1.1 0-214104600/1/1_ 0.4013220.00.000.00 130.245.169.215http/1.1localhost:80GET /examples HTTP/1.1 0-214104600/2/2_ 0.460240.00.000.00 104.248.172.107http/1.1localhost:80GET /telescope/requests HTTP/1.1 0-214104600/1/1_ 0.480770.00.000.00 104.248.172.107http/1.1localhost:80GET /.DS_Store HTTP/1.1 0-214104600/4/4_ 0.41112100.00.010.01 130.245.169.215http/1.1 0-214104600/1/1_ 0.48018180.00.010.01 212.71.232.224http/1.1localhost:80GET /server-status HTTP/1.1 1-214104610/1/1_ 2.540220.00.000.00 207.154.204.175http/1.1www.pizzeriamimo.nl:80GET /config.json HTTP/1.1 1-214104610/1/1_ 2.2612110.00.000.00 130.245.169.215http/1.1localhost:80GET /Javascript HTTP/1.1 1-214104610/3/3_ 0.0882350.00.000.00 164.92.240.121http/1.1localhost:80GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 1-214104610/1/1_ 0.398012120.00.000.00 164.92.240.121http/1.1 1-214104610/1/1_ 0.1482660.00.000.00 164.92.240.121http/1.1localhost:80GET /s/34362e31372e372e313939/_/;/META-INF/maven/com.atlassian. 1-214104610/1/1_ 0.208228280.00.000.00 164.92.240.121http/1.1localhost:80GET /.git/config HTTP/1.1 1-214104610/1/1_ 0.158218180.00.000.00 164.92.240.121http/1.1localhost:80GET / HTTP/1.1 1-214104610/1/1_ 0.1582770.00.000.00 164.92.240.121http/1.1localhost:80GET /telescope/requests HTTP/1.1 1-214104610/1/1_ 0.3980440.00.000.00 172.104.234.191http/1.1localhost:80GET /.env HTTP/1.1 1-214104610/1/1_ 2.2612110.00.000.00 130.245.169.215http/1.1localhost:80GET /public HTTP/1.1 1-214104610/1/1_ 0.307913130.00.000.00 164.92.240.121http/1.1 1-214104610/1/1_ 2.3311330.00.000.00 130.245.169.215http/1.1localhost:80GET /browser HTTP/1.1 1-214104610/2/2_ 0.3281350.00.010.01 207.154.204.175http/1.1www.davetiye.nl:443GET /config.json HTTP/1.1 1-214104610/2/2_ 0.9645155115530.00.010.01 157.90.181.151http/1.1www.pizzerialabarca.nl:443GET /caprese-salade.html?tag=caprese%20salade&sort=pd.name&orde 1-214104610/2/2_ 2.2512140.00.000.00 130.245.169.215http/1.1localhost:80GET /language HTTP/1.1 1-214104610/1/1_ 1.8713220.00.000.00 130.245.169.215http/1.1localhost:80GET /includes HTTP/1.1 1-214104610/1/1_ 2.2712110.00.000.00 130.245.169.215http/1.1localhost:80GET /wp-admin HTTP/1.1 1-214104610/1/1_ 1.5124440.00.000.00 51.81.167.146http/1.1localhost:80GET / HTTP/1.1 1-214104610/1/1_ 1.830220.00.000.00 130.245.169.215http/1.1localhost:80GET /oci8 HTTP/1.1 1-214104610/1/1_ 0.6526146114610.00.010.01 3.90.48.206http/1.1 1-214104610/1/1_ 2.2512110.00.000.00 130.245.169.215http/1.1localhost:80GET /app HTTP/1.1 1-214104610/1/1_ 0.4526000.00.040.04
The server-status page (usually /server-status) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb31531c1093531c10936b1dd6b2
Apache Status Apache Server Status for mail.pizzeriamimo.nl (via 46.17.7.199) Server Version: Apache/2.4.51 (Unix) OpenSSL/1.0.1e-fips Server MPM: event Server Built: Oct 8 2021 01:40:09 Current Time: Thursday, 23-Jun-2022 00:18:37 CEST Restart Time: Thursday, 23-Jun-2022 00:17:14 CEST Parent Server Config. Generation: 215 Parent Server MPM Generation: 214 Server uptime: 1 minute 23 seconds Server load: 2.10 1.98 1.86 Total accesses: 485 - Total Traffic: 2.5 MB - Total Duration: 159041 CPU Usage: u340.61 s847.79 cu377937 cs571396 - 1150000% CPU load 5.84 requests/sec - 31.0 kB/second - 5.3 kB/request - 327.92 ms/request 12 requests currently being processed, 372 idle workers SlotPIDStoppingConnections ThreadsAsync connections totalacceptingbusyidlewritingkeep-aliveclosing 010460no0yes064000 110461no0yes163000 210463no2yes163011 310464no1yes757000 410472no0yes361000 510481no0yes064000 Sum603 12372011 ________________________________________________________________ ______________________________________________________________R_ ____W___________________________________________________________ ___________________________________________________RRRRR______RW _________________________________________________________RW__R__ ________________________________________________________________ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-214104600/1/1_ 0.1381550.00.000.00 207.154.204.175http/1.1localhost:443GET /s/34362e31372e372e313939/_/;/META-INF/maven/com.atlassian. 0-214104600/1/1_ 0.0981220.00.000.00 206.81.18.165http/1.1www.davetiye.nl:443GET /.git/config HTTP/1.1 0-214104600/1/1_ 0.108111110.00.000.00 206.81.18.165http/1.1www.davetiye.nl:443GET /server-status HTTP/1.1 0-214104600/1/1_ 0.2879220.00.000.00 164.92.240.121http/1.1localhost:443GET /.DS_Store HTTP/1.1 0-214104600/1/1_ 0.2181220.00.000.00 206.81.18.165http/1.1www.davetiye.nl:443GET /login.action HTTP/1.1 0-214104600/1/1_ 0.198147470.00.000.00 207.154.204.175http/1.1localhost:443GET /telescope/requests HTTP/1.1 0-214104600/1/1_ 0.2680220.00.000.00 68.183.75.40http/1.1www.davetiye.nl:80GET / HTTP/1.1 0-214104600/1/1_ 0.3743220.00.000.00 162.55.86.60http/1.1www.faraovlaardingen.nl:80GET /robots.txt HTTP/1.1 0-214104600/2/2_ 0.1444350.00.010.01 3.90.48.206http/1.1 0-214104600/1/1_ 0.0647220.00.000.00 3.90.48.206http/1.1 0-214104600/1/1_ 0.0159220.00.000.00 3.90.48.206http/1.1 0-214104600/1/1_ 0.2462440.00.000.00 3.90.48.206http/1.1 0-214104600/1/1_ 0.206215150.00.000.00 3.90.48.206http/1.1 0-214104600/1/1_ 0.1963880.00.000.00 3.90.48.206http/1.1 0-214104600/1/1_ 0.1865880.00.000.00 3.90.48.206http/1.1 0-214104600/1/1_ 0.1368220.00.000.00 3.90.48.206http/1.1 0-214104600/1/1_ 0.1529330.00.000.00 3.90.48.206http/1.1 0-214104600/1/1_ 0.490110.00.000.00 212.71.232.224http/1.1localhost:80GET /info.php HTTP/1.1 0-214104600/1/1_ 0.4013220.00.000.00 130.245.169.215http/1.1localhost:80GET /examples HTTP/1.1 0-214104600/2/2_ 0.460240.00.000.00 104.248.172.107http/1.1localhost:80GET /telescope/requests HTTP/1.1 0-214104600/1/1_ 0.480770.00.000.00 104.248.172.107http/1.1localhost:80GET /.DS_Store HTTP/1.1 0-214104600/4/4_ 0.4102100.00.010.01 164.92.240.121http/1.1 0-214104600/1/1_ 0.48018180.00.010.01 212.71.232.224http/1.1localhost:80GET /server-status HTTP/1.1 1-214104610/1/1_ 2.540220.00.000.00 207.154.204.175http/1.1www.pizzeriamimo.nl:80GET /config.json HTTP/1.1 1-214104610/1/1_ 2.2612110.00.000.00 130.245.169.215http/1.1localhost:80GET /Javascript HTTP/1.1 1-214104610/3/3_ 0.0882350.00.000.00 164.92.240.121http/1.1localhost:80GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 1-214104610/1/1_ 0.398012120.00.000.00 164.92.240.121http/1.1 1-214104610/1/1_ 0.1482660.00.000.00 164.92.240.121http/1.1localhost:80GET /s/34362e31372e372e313939/_/;/META-INF/maven/com.atlassian. 1-214104610/1/1_ 0.208228280.00.000.00 164.92.240.121http/1.1localhost:80GET /.git/config HTTP/1.1 1-214104610/1/1_ 0.158218180.00.000.00 164.92.240.121http/1.1localhost:80GET / HTTP/1.1 1-214104610/1/1_ 0.1582770.00.000.00 164.92.240.121http/1.1localhost:80GET /telescope/requests HTTP/1.1 1-214104610/1/1_ 0.3980440.00.000.00 172.104.234.191http/1.1localhost:80GET /.env HTTP/1.1 1-214104610/1/1_ 2.2612110.00.000.00 130.245.169.215http/1.1localhost:80GET /public HTTP/1.1 1-214104610/1/1_ 0.308013130.00.000.00 164.92.240.121http/1.1 1-214104610/1/1_ 2.3312330.00.000.00 130.245.169.215http/1.1localhost:80GET /browser HTTP/1.1 1-214104610/2/2_ 0.3281350.00.010.01 207.154.204.175http/1.1www.davetiye.nl:443GET /config.json HTTP/1.1 1-214104610/2/2_ 0.9645155115530.00.010.01 157.90.181.151http/1.1www.pizzerialabarca.nl:443GET /caprese-salade.html?tag=caprese%20salade&sort=pd.name&orde 1-214104610/2/2_ 2.2512140.00.000.00 130.245.169.215http/1.1localhost:80GET /language HTTP/1.1 1-214104610/1/1_ 1.8713220.00.000.00 130.245.169.215http/1.1localhost:80GET /includes HTTP/1.1 1-214104610/1/1_ 2.2712110.00.000.00 130.245.169.215http/1.1localhost:80GET /wp-admin HTTP/1.1 1-214104610/1/1_ 1.5124440.00.000.00 51.81.167.146http/1.1localhost:80GET / HTTP/1.1 1-214104610/1/1_ 1.830220.00.000.00 130.245.169.215http/1.1localhost:80GET /oci8 HTTP/1.1 1-214104610/1/1_ 0.6526146114610.00.010.01 3.90.48.206http/1.1 1-214104610/1/1_ 2.2512110.00.000.00 130.245.169.215http/1.1localhost:80GET /app HTTP/1.1 1-214104610/1/1_ 0.4526000.00.040.04