The server-status page (usually /server-status) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb310880436c0880436c2fb8359f
Apache Status Apache Server Status for mail.queenspizzadoner.nl (via 46.17.7.199) Server Version: Apache/2.4.51 (Unix) OpenSSL/1.0.1e-fips Server MPM: event Server Built: Oct 8 2021 01:40:09 Current Time: Tuesday, 19-Jul-2022 00:18:27 CEST Restart Time: Tuesday, 19-Jul-2022 00:17:04 CEST Parent Server Config. Generation: 303 Parent Server MPM Generation: 302 Server uptime: 1 minute 23 seconds Server load: 2.16 2.52 2.37 Total accesses: 384 - Total Traffic: 4.0 MB - Total Duration: 145303 CPU Usage: u467.32 s1173.65 cu423546 cs653523 - 1.3e+6% CPU load 4.63 requests/sec - 49.9 kB/second - 10.8 kB/request - 378.393 ms/request 17 requests currently being processed, 367 idle workers SlotPIDStoppingConnections ThreadsAsync connections totalacceptingbusyidlewritingkeep-aliveclosing 012527no0yes559000 112528no0yes064000 212529no0yes262000 312530no0yes658000 412532no1yes262000 512534no1yes262000 Sum602 17367000 ___________________________R___W_______RR_____________________R_ ________________________________________________________________ _____________________________________________________________W_R _________________________________________________R_RR_R____R___W _________________________________________________R_____W________ __________________________________________________________W____W ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-302125270/1/1_ 0.0783220.00.000.00 185.191.171.17http/1.1www.s-orthen.nl:80GET /pizzas/pizza-stagioni?order=DESC&sort=p.model HTTP/1.1 0-302125270/1/1_ 0.2218194519450.00.010.01 172.104.234.191http/1.1 0-302125270/1/1_ 0.2082117511750.00.010.01 185.191.171.43http/1.1www.korhan.nl:443GET /robots.txt HTTP/1.1 0-302125270/1/1_ 0.8317550.00.000.00 172.104.234.191http/1.1localhost:443GET /.DS_Store HTTP/1.1 0-302125270/1/1_ 0.7917220.00.000.00 172.104.234.191http/1.1localhost:443GET /s/34362e31372e372e313939/_/;/META-INF/maven/com.atlassian. 0-302125270/1/1_ 0.7617220.00.000.00 172.104.234.191http/1.1localhost:443GET / HTTP/1.1 0-302125270/0/0R 0.000000.00.000.00 172.105.48.159http/1.1 0-302125271/0/0W 0.000000.00.000.00 172.105.48.159http/1.1localhost:80GET /info.php HTTP/1.1 0-302125270/3/3_ 0.980480.00.000.00 161.35.122.84http/1.1localhost:80HELP 0-302125270/1/1R 0.7817660.00.000.00 172.105.48.159http/1.1 0-302125270/0/0R 0.0083000.00.000.00 172.105.48.159http/1.1 0-302125270/2/2_ 0.9292390.00.010.01 196.196.216.216http/1.1www.eethuismilas.be:443GET / HTTP/1.1 0-302125270/2/2_ 0.9492210.00.010.01 199.33.68.13http/1.1localhost:443GET / HTTP/1.1 0-302125270/2/2_ 0.6624224490.00.010.01 172.104.234.191http/1.1localhost:80GET /telescope/requests HTTP/1.1 0-302125270/2/2_ 0.6713303054930.00.010.01 157.90.177.217http/1.1www.denijl-arkel.nl:443GET /pizza-kipdoner.html?tag=vlees%20pizzas&sort=p.model&order= 0-302125270/3/3_ 0.960216150.00.010.01 104.248.172.107http/1.1localhost:80GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 0-302125270/4/4_ 0.970118090.00.030.03 104.248.172.107http/1.1localhost:80GET /.env HTTP/1.1 0-302125270/3/3_ 0.612257929530.00.010.01 192.53.121.171http/1.1www.lordkebab.nl:443GET /s/34362e31372e372e313939/_/;/META-INF/maven/com.atlassian. 0-302125270/6/6R 0.709138390.00.140.14 192.53.121.171http/1.1www.lordkebab.nl:443GET /s/34362e31372e372e313939/_/;/META-INF/maven/com.atlassian. 0-302125270/7/7_ 0.699558800.00.070.07 54.36.149.60http/1.1 1-302125280/1/1_ 0.2822000.00.040.04 192.53.121.171http/1.1www.lordkebab.nl:443GET /.git/config HTTP/1.1 1-302125280/1/1_ 0.1627220.00.000.00 104.248.172.107http/1.1localhost:80GET /login.action HTTP/1.1 1-302125280/1/1_ 0.4116000.00.040.04 172.104.234.191http/1.1www.lordkebab.nl:443GET /telescope/requests HTTP/1.1 1-302125280/1/1_ 0.5011220.00.000.00 216.131.116.88http/1.1localhost:443GET / HTTP/1.1 1-302125280/1/1_ 0.2822000.00.040.04 192.53.121.171http/1.1www.lordkebab.nl:443GET /.DS_Store HTTP/1.1 1-302125280/1/1_ 0.2922000.00.040.04 192.53.121.171http/1.1www.lordkebab.nl:443GET /info.php HTTP/1.1 1-302125280/1/1_ 0.1327660.00.000.00 104.248.172.107http/1.1localhost:80GET /?rest_route=/wp/v2/users/ HTTP/1.1 1-302125280/1/1_ 0.1427110.00.000.00 104.248.172.107http/1.1localhost:80GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 1-302125280/1/1_ 0.3617220.00.000.00 172.104.234.191http/1.1localhost:443GET /.git/config HTTP/1.1 1-302125280/1/1_ 0.3121000.00.070.07 192.53.121.171http/1.1www.lordkebab.nl:443GET / HTTP/1.1 1-302125280/1/1_ 0.3717220.00.000.00 172.104.234.191http/1.1localhost:443GET /?rest_route=/wp/v2/users/ HTTP/1.1 1-302125280/2/2_ 0.39174130.00.000.00 172.104.234.191http/1.1localhost:443GET /.env HTTP/1.1 1-302125280/1/1_ 0.2118110.00.000.00 172.104.234.191http/1.1www.lordkebab.nl:80GET /server-status HTTP/1.1 1-302125280/1/1_ 0.0574000.00.120.12 216.244.66.195http/1.1www.eethuisbodrum.nl:443GET /Schotels/Schotel-Spareribs?sort=p.price&order=ASC&limit=50 1-302125280/1/1_ 0.1913330.00.000.00 107.178.200.217http/1.1 1-302125280/1/1_ 0.122712120.00.000.00 161.35.122.84http/1.1localhost:80GET /s/34362e31372e372e313939/_/;/META-INF/maven/com.atlassian. 1-302125280/4/4_ 0.590350.00.000.00 172.105.48.159http/1.1localhost:80\x16\x03\x01\x01\v\x01 1-302125280/3/3_ 0.3814350.00.000.00 172.104.234.191http/1.1localhost:443GET /info.php HTTP/1.1 1-302125280/3/3_ 0.580350.00.000.00 161.35.122.84http/1.1localhost:80GET /s/34362e31372e372e313939/_/;/META-INF/maven/com.atlassian. 1-302125280/1/1_ 0.111220.00.000.00 172.104.234.191http/1.1 1-302125280/3/3_ 0.5595100.00.040.04 199.33.68.13http/1.1localhost:80GET / HTTP/1.1 1-302125280/2/2_ 0.530216400.00.010.01 104.248.172.107http/1.1 1-302125280/1/1_ 0.189220.00.000.00
The server-status page (usually /server-status) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb310880436c0880436c684e96c7
Apache Status Apache Server Status for mail.queenspizzadoner.nl (via 46.17.7.199) Server Version: Apache/2.4.51 (Unix) OpenSSL/1.0.1e-fips Server MPM: event Server Built: Oct 8 2021 01:40:09 Current Time: Tuesday, 19-Jul-2022 00:18:31 CEST Restart Time: Tuesday, 19-Jul-2022 00:17:04 CEST Parent Server Config. Generation: 303 Parent Server MPM Generation: 302 Server uptime: 1 minute 27 seconds Server load: 2.31 2.54 2.38 Total accesses: 478 - Total Traffic: 4.3 MB - Total Duration: 160316 CPU Usage: u467.87 s1174.76 cu423546 cs653523 - 1240000% CPU load 5.49 requests/sec - 51.0 kB/second - 9.3 kB/request - 335.389 ms/request 18 requests currently being processed, 366 idle workers SlotPIDStoppingConnections ThreadsAsync connections totalacceptingbusyidlewritingkeep-aliveclosing 012527no0yes361000 112528no13yes0640013 212529no0yes262000 312530no21yes6580019 412532no1yes163000 512534no24yes6580020 Sum6059 183660052 _______________________________________________________R_R_____R ________________________________________________________________ ___________________________________________________________WW___ ____________________________________________R______RR_R__R__R___ __________________________________________________R_____________ _______________________________________________________R_W_WRW_W ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-302125270/1/1_ 0.0787220.00.000.00 185.191.171.17http/1.1www.s-orthen.nl:80GET /pizzas/pizza-stagioni?order=DESC&sort=p.model HTTP/1.1 0-302125270/1/1_ 0.2222194519450.00.010.01 172.104.234.191http/1.1 0-302125270/1/1_ 0.2086117511750.00.010.01 185.191.171.43http/1.1www.korhan.nl:443GET /robots.txt HTTP/1.1 0-302125270/1/1_ 0.8321550.00.000.00 172.104.234.191http/1.1localhost:443GET /.DS_Store HTTP/1.1 0-302125270/1/1_ 0.7921220.00.000.00 172.104.234.191http/1.1localhost:443GET /s/34362e31372e372e313939/_/;/META-INF/maven/com.atlassian. 0-302125270/1/1_ 0.7621220.00.000.00 172.104.234.191http/1.1localhost:443GET / HTTP/1.1 0-302125270/1/1_ 1.033110.00.000.00 172.105.48.159http/1.1localhost:80GET /.git/config HTTP/1.1 0-302125270/1/1_ 1.003330.00.000.00 172.105.48.159http/1.1localhost:80GET /info.php HTTP/1.1 0-302125270/3/3_ 0.984480.00.000.00 161.35.122.84http/1.1localhost:80HELP 0-302125270/2/2_ 1.0133100.00.000.00 172.105.48.159http/1.1localhost:80GET /telescope/requests HTTP/1.1 0-302125270/1/1_ 1.023440.00.000.00 172.105.48.159http/1.1localhost:80GET / HTTP/1.1 0-302125270/1/1_ 1.062330.00.000.00 192.53.121.171http/1.1localhost:443GET /.DS_Store HTTP/1.1 0-302125270/1/1_ 1.062220.00.000.00 192.53.121.171http/1.1localhost:443GET /?rest_route=/wp/v2/users/ HTTP/1.1 0-302125270/2/2_ 0.92132390.00.010.01 196.196.216.216http/1.1www.eethuismilas.be:443GET / HTTP/1.1 0-302125270/2/2_ 0.94132210.00.010.01 199.33.68.13http/1.1localhost:443GET / HTTP/1.1 0-302125270/0/0R 0.0025000.00.000.00 172.105.28.218http/1.1 0-302125270/2/2R 0.6628224490.00.010.01 172.105.28.218http/1.1 0-302125270/3/3_ 1.052254950.00.020.02 192.53.121.171http/1.1localhost:443GET /telescope/requests HTTP/1.1 0-302125270/3/3_ 0.964216150.00.010.01 104.248.172.107http/1.1localhost:80GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 0-302125270/4/4_ 0.971118090.00.030.03 104.248.172.107http/1.1localhost:80GET /.env HTTP/1.1 0-302125270/4/4_ 1.092229550.00.010.01 172.104.234.191http/1.1www.queenspizzadoner.nl:80GET / HTTP/1.1 0-302125270/6/6_ 0.700138390.00.140.14 172.105.28.218http/1.1 0-302125270/7/7R 0.692558800.00.070.07 172.105.28.218http/1.1 1-302125280/2/2_ 0.772190.00.000.00 172.104.234.191http/1.1www.queenspizzadoner.nl:80GET /.DS_Store HTTP/1.1 1-302125280/1/1_ 0.2826000.00.040.04 192.53.121.171http/1.1www.lordkebab.nl:443GET /.git/config HTTP/1.1 1-302125280/2/2_ 0.782140.00.000.00 172.104.234.191http/1.1www.queenspizzadoner.nl:80GET /server-status HTTP/1.1 1-302125280/1/1_ 0.692110.00.000.00 172.104.234.191http/1.1www.queenspizzadoner.nl:80GET / HTTP/1.1 1-302125280/1/1_ 0.1630220.00.000.00 104.248.172.107http/1.1localhost:80GET /login.action HTTP/1.1 1-302125280/1/1_ 0.4120000.00.040.04 172.104.234.191http/1.1www.lordkebab.nl:443GET /telescope/requests HTTP/1.1 1-302125280/1/1_ 0.5015220.00.000.00 216.131.116.88http/1.1localhost:443GET / HTTP/1.1 1-302125280/1/1_ 0.2826000.00.040.04 192.53.121.171http/1.1www.lordkebab.nl:443GET /.DS_Store HTTP/1.1 1-302125280/1/1_ 0.593220.00.000.00 172.105.48.159http/1.1localhost:80GET /config.json HTTP/1.1 1-302125280/1/1_ 0.2926000.00.040.04 192.53.121.171http/1.1www.lordkebab.nl:443GET /info.php HTTP/1.1 1-302125280/1/1_ 0.1331660.00.000.00 104.248.172.107http/1.1localhost:80GET /?rest_route=/wp/v2/users/ HTTP/1.1 1-302125280/1/1_ 0.672110.00.000.00 104.131.94.11http/1.1localhost:443GET /login.action HTTP/1.1 1-302125280/1/1_ 0.1431110.00.000.00 104.248.172.107http/1.1localhost:80GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 1-302125280/1/1_ 0.682220.00.000.00 192.53.121.171http/1.1localhost:443GET / HTTP/1.1 1-302125280/1/1_ 0.3621220.00.000.00 172.104.234.191http/1.1localhost:443GET /.git/config HTTP/1.1 1-302125280/1/1_ 0.3125000.00.070.07 192.53.121.171http/1.1www.lordkebab.nl:443GET / HTTP/1.1 1-302125280/1/1_ 0.3721220.00.000.00 172.104.234.191http/1.1localhost:443GET /?rest_route=/wp/v2/users/ HTTP/1.1 1-302125280/2/2_ 0.39214130.00.000.00 172.104.234.191http/1.1localhost:443GET /.env HTTP/1.1 1-302125280/2/2_ 0.76212140.00.000.00 172.104.234.191http/1.1www.queenspizzadoner.nl:80GET /server-status HTTP/1.1 1-302125280/2/2_ 0.76219190.00.120.12 172.104.234.191http/1.1www.queenspizzadoner.nl:80GET /.DS_Store HTTP/1.1