The server-status page (usually /server-status
) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb31005eb77c005eb77cc4421113
Apache Status Apache Server Status for wk-auktion.dk Server Version: Apache/2.2.34 (Unix) PHP/5.2.17 Server Built: Oct 8 2019 02:07:04 Current Time: Thursday, 24-Nov-2022 13:40:47 CET Restart Time: Thursday, 24-Nov-2022 06:15:07 CET Parent Server Generation: 7 Server uptime: 7 hours 25 minutes 40 seconds Total accesses: 6709 - Total Traffic: 30.9 MB CPU Usage: u.73 s.13 cu0 cs0 - .00322% CPU load .251 requests/sec - 1213 B/second - 4835 B/request 2 requests currently being processed, 30 idle workers _____________________RW_________................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqConnChildSlotClientVHostRequest 0-7553890/16/220_ 0.032400.00.010.39 209.141.32.113webhotel5.webhosting.dkGET /adminer-4.6.3/ HTTP/1.0 1-7553900/15/215_ 0.03300.00.010.68 194.169.175.135webhotel5.webhosting.dkPOST /wp-content/admin.php HTTP/1.0 2-7553910/15/215_ 0.03020.00.011.14 81.19.232.105webhotel5.webhosting.dkGET / HTTP/1.0 3-7553920/15/213_ 0.04030.00.010.74 185.3.94.183webhotel5.webhosting.dkGET /?rest_route=/wp/v2/users/ HTTP/1.0 4-7553930/15/214_ 0.02020.00.020.54 185.3.94.183webhotel5.webhosting.dkGET / HTTP/1.0 5-7553940/15/216_ 0.03020.00.021.82 185.3.94.183webhotel5.webhosting.dkGET / HTTP/1.0 6-7553950/16/216_ 0.03000.00.020.54 185.3.94.183webhotel5.webhosting.dkven/com.atlassian.jira/jira-webapp-dist/pom.properties HTTP/1.0 7-7553960/14/212_ 0.034200.00.011.10 209.141.32.113webhotel5.webhosting.dkGET /adminer-4.7.7-en.php HTTP/1.0 8-7553970/15/211_ 0.03000.00.010.53 185.3.94.183webhotel5.webhosting.dkGET /.git/config HTTP/1.0 9-7553980/15/215_ 0.03000.00.050.95 185.3.94.183webhotel5.webhosting.dkl/microsoft.exchange.ediscovery.exporttool.application HTTP/1.0 10-7553990/15/212_ 0.03000.00.001.50 185.3.94.183webhotel5.webhosting.dkGET /debug/default/view?panel=config HTTP/1.0 11-7554000/15/213_ 0.02010.00.010.57 185.3.94.183webhotel5.webhosting.dkGET /server-status HTTP/1.0 12-7554010/15/211_ 0.03000.00.050.92 185.3.94.183webhotel5.webhosting.dkPUT /api/v2/cmdb/system/admin/admin HTTP/1.0 13-7554020/15/214_ 0.03000.00.040.78 185.3.94.183webhotel5.webhosting.dkGET /info.php HTTP/1.0 14-7554030/15/213_ 0.02000.00.010.56 185.3.94.183webhotel5.webhosting.dkGET /telescope/requests HTTP/1.0 15-7554040/15/211_ 0.03000.00.000.64 185.3.94.183webhotel5.webhosting.dkGET /login.action HTTP/1.0 16-7554050/15/208_ 0.02000.00.280.62 185.3.94.183webhotel5.webhosting.dkGET /about HTTP/1.0 17-7554060/15/210_ 0.03000.00.010.48 185.3.94.183webhotel5.webhosting.dkGET /v2/_catalog HTTP/1.0 18-7554070/15/210_ 0.03010.00.010.80 185.3.94.183webhotel5.webhosting.dkGET /config.json HTTP/1.0 19-7554080/15/212_ 0.03010.00.020.65 185.3.94.183webhotel5.webhosting.dkGET /api/search?folderIds=0 HTTP/1.0 20-7554170/15/210_ 0.03000.00.001.77 81.19.232.105webhotel5.webhosting.dkGET /debug/default/view?panel=config HTTP/1.0 21-7554180/14/212W 0.03000.00.010.83 81.19.232.105webhotel5.webhosting.dkPUT /api/v2/cmdb/system/admin/admin HTTP/1.0 22-7554530/14/214W 0.02000.00.011.24 81.19.232.105webhotel5.webhosting.dkGET /server-status HTTP/1.0 23-7554640/14/210_ 0.022800.00.040.63 209.141.32.113webhotel5.webhosting.dkGET /adminer-4.6.2/ HTTP/1.0 24-7554800/14/211_ 0.032710.00.020.87 209.141.32.113webhotel5.webhosting.dkGET /adminer-4.7.8/ HTTP/1.0 25-7554830/14/210_ 0.022600.00.010.46 209.141.32.113webhotel5.webhosting.dkGET /manager/adminer.php HTTP/1.0 26-7554840/14/210_ 0.012500.00.010.78 209.141.32.113webhotel5.webhosting.dkGET /adminer-4.6.3-mysql-en.php HTTP/1.0 27-7554850/14/206_ 0.022300.00.015.47 209.141.32.113webhotel5.webhosting.dkGET /adminer-4.7.4-mysql.php HTTP/1.0 28-7555020/14/206_ 0.032110.00.010.86 81.19.232.89webhotel5.webhosting.dkGET / HTTP/1.0 29-7555030/14/205_ 0.022000.00.011.25 141.255.167.186webhotel5.webhosting.dkGET /.svn HTTP/1.0 30-7620890/10/197_ 0.022210.00.020.53 81.19.232.105www.sydsjaellandsgarderforeningGET /gen_for_20.php HTTP/1.0 31-729180/5/98_ 0.01000.00.000.15 185.3.94.183webhotel5.webhosting.dkGET /.DS_Store HTTP/1.0 32-5-0/0/35. 0.01603800.00.000.15 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 33-0-0/0/12. 0.012403500.00.000.00 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 34-0-0/0/12. 0.012403500.00.000.00 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot Apache Server at wk-auktion.dk Port 443
The server-status page (usually /server-status
) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb31005eb77c005eb77cf7536896
Apache Status Apache Server Status for wk-auktion.dk Server Version: Apache/2.2.34 (Unix) PHP/5.2.17 Server Built: Oct 8 2019 02:07:04 Current Time: Thursday, 24-Nov-2022 13:40:47 CET Restart Time: Thursday, 24-Nov-2022 06:15:07 CET Parent Server Generation: 7 Server uptime: 7 hours 25 minutes 40 seconds Total accesses: 6701 - Total Traffic: 30.9 MB CPU Usage: u.71 s.13 cu0 cs0 - .00314% CPU load .251 requests/sec - 1213 B/second - 4841 B/request 7 requests currently being processed, 25 idle workers _________CCWCWC________________C................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqConnChildSlotClientVHostRequest 0-7553890/16/220_ 0.032400.00.010.39 209.141.32.113webhotel5.webhosting.dkGET /adminer-4.6.3/ HTTP/1.0 1-7553900/15/215_ 0.03200.00.010.68 194.169.175.135webhotel5.webhosting.dkPOST /wp-content/admin.php HTTP/1.0 2-7553910/15/215_ 0.03020.00.011.14 81.19.232.105webhotel5.webhosting.dkGET / HTTP/1.0 3-7553920/15/213_ 0.04030.00.010.74 185.3.94.183webhotel5.webhosting.dkGET /?rest_route=/wp/v2/users/ HTTP/1.0 4-7553930/15/214_ 0.02020.00.020.54 185.3.94.183webhotel5.webhosting.dkGET / HTTP/1.0 5-7553940/15/216_ 0.03020.00.021.82 185.3.94.183webhotel5.webhosting.dkGET / HTTP/1.0 6-7553950/16/216_ 0.03000.00.020.54 185.3.94.183webhotel5.webhosting.dkven/com.atlassian.jira/jira-webapp-dist/pom.properties HTTP/1.0 7-7553960/14/212_ 0.034100.00.011.10 209.141.32.113webhotel5.webhosting.dkGET /adminer-4.7.7-en.php HTTP/1.0 8-7553970/15/211_ 0.03000.00.010.53 185.3.94.183webhotel5.webhosting.dkGET /.git/config HTTP/1.0 9-7553980/15/215_ 0.03000.00.050.95 185.3.94.183webhotel5.webhosting.dkl/microsoft.exchange.ediscovery.exporttool.application HTTP/1.0 10-7553990/15/212_ 0.03000.00.001.50 185.3.94.183webhotel5.webhosting.dkGET /debug/default/view?panel=config HTTP/1.0 11-7554000/14/212W 0.01000.00.010.56 185.3.94.183webhotel5.webhosting.dkGET /server-status HTTP/1.0 12-7554010/15/211_ 0.03000.00.050.92 185.3.94.183webhotel5.webhosting.dkPUT /api/v2/cmdb/system/admin/admin HTTP/1.0 13-7554020/14/213W 0.03000.00.040.78 185.3.94.183webhotel5.webhosting.dkGET /info.php HTTP/1.0 14-7554030/15/213_ 0.02000.00.010.56 185.3.94.183webhotel5.webhosting.dkGET /telescope/requests HTTP/1.0 15-7554040/14/210_ 0.033410.00.000.64 209.141.32.113webhotel5.webhosting.dkGET /adminer-4.7.7-mysql-en.php HTTP/1.0 16-7554050/14/207_ 0.023600.00.280.62 209.141.32.113webhotel5.webhosting.dkGET /adminer-4.6.1.php HTTP/1.0 17-7554060/14/209_ 0.033400.00.000.48 209.141.32.113webhotel5.webhosting.dkGET /adminer-4.7.4/ HTTP/1.0 18-7554070/14/209_ 0.033300.00.010.80 209.141.32.113webhotel5.webhosting.dkGET /adminer-4.6.2-en.php HTTP/1.0 19-7554080/14/211_ 0.023100.00.020.65 209.141.32.113webhotel5.webhosting.dkGET /data/adminer.php HTTP/1.0 20-7554170/14/209_ 0.033000.00.001.77 209.141.32.113webhotel5.webhosting.dkGET /mysql.php HTTP/1.0 21-7554180/14/212_ 0.032900.00.010.83 209.141.32.113webhotel5.webhosting.dkGET /phpmyadmin.php HTTP/1.0 22-7554530/14/214_ 0.023000.00.011.24 209.141.32.113webhotel5.webhosting.dkGET /adminer-4.8.0/ HTTP/1.0 23-7554640/14/210_ 0.022700.00.040.63 209.141.32.113webhotel5.webhosting.dkGET /adminer-4.6.2/ HTTP/1.0 24-7554800/14/211_ 0.032610.00.020.87 209.141.32.113webhotel5.webhosting.dkGET /adminer-4.7.8/ HTTP/1.0 25-7554830/14/210_ 0.022500.00.010.46 209.141.32.113webhotel5.webhosting.dkGET /manager/adminer.php HTTP/1.0 26-7554840/14/210_ 0.012400.00.010.78 209.141.32.113webhotel5.webhosting.dkGET /adminer-4.6.3-mysql-en.php HTTP/1.0 27-7554850/14/206_ 0.022300.00.015.47 209.141.32.113webhotel5.webhosting.dkGET /adminer-4.7.4-mysql.php HTTP/1.0 28-7555020/14/206_ 0.032010.00.010.86 81.19.232.89webhotel5.webhosting.dkGET / HTTP/1.0 29-7555030/14/205_ 0.021900.00.011.25 141.255.167.186webhotel5.webhosting.dkGET /.svn HTTP/1.0 30-7620890/10/197_ 0.022210.00.020.53 81.19.232.105www.sydsjaellandsgarderforeningGET /gen_for_20.php HTTP/1.0 31-729181/5/98C 0.01000.20.000.15 185.3.94.183webhotel5.webhosting.dkGET /.DS_Store HTTP/1.0 32-5-0/0/35. 0.01603700.00.000.15 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 33-0-0/0/12. 0.012403400.00.000.00 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 34-0-0/0/12. 0.012403400.00.000.00 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot Apache Server at wk-auktion.dk Port 80