The server-status page (usually /server-status) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb31b96b05fdb96b05fdfc96ba79
Apache Status Apache Server Status for www.enjoymega.com (via 45.147.197.190) Server Version: Apache/2.4.55 (cPanel) OpenSSL/1.1.1t mod_bwlimited/1.4 Phusion_Passenger/6.0.17 Server MPM: worker Server Built: Jan 18 2023 17:54:12 Current Time: Tuesday, 28-Mar-2023 04:00:51 EEST Restart Time: Wednesday, 22-Mar-2023 18:38:54 EET Parent Server Config. Generation: 133 Parent Server MPM Generation: 132 Server uptime: 5 days 8 hours 21 minutes 56 seconds Server load: 3.16 3.10 2.91 Total accesses: 3079048 - Total Traffic: 160.6 GB - Total Duration: 3267427763 CPU Usage: u183.58 s85.12 cu16331.3 cs4588.52 - 4.59% CPU load 6.66 requests/sec - 364.4 kB/second - 54.7 kB/request - 1061.18 ms/request 14 requests currently being processed, 111 idle workers ____________KKK__________K_K_KKK___________________K___KK_______ ________________K_______________________WW___________________... ...................... Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-132306980/1/21190_ 0.519833221165770.00.00848.92 45.147.197.190http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 0-132306980/1/21658_ 0.5472558234021760.00.001424.92 45.147.197.190http/1.1aviatorplaygames.com.sh4139956.POST /xmlrpc.php HTTP/1.1 0-132306980/1/21763_ 0.514549214506660.00.011528.39 45.147.197.190http/1.1the-raw-recipe.com.sh3891697.c.POST /wp-login.php HTTP/1.1 0-132306980/1/22052_ 0.47108234417130.00.00847.37 127.0.0.1http/1.1s31.server-panel.net:81GET /server-status?auto HTTP/1.1 0-132306980/1/20673_ 0.5281635211855480.00.00951.83 45.147.197.190http/1.1authentically-andrea.com.sh4254POST //xmlrpc.php HTTP/1.1 0-132306980/1/21406_ 0.46106205923600.00.011234.29 127.0.0.1http/1.1s31.server-panel.net:81GET /filmy/16413-smotret-bbc-velikie-voiny-2007-onlayn-v-hd.htm 0-132306980/12/21330_ 0.5716210429450.00.11857.49 45.147.197.190http/1.1playtlauncher.click.sh4018938.bGET /images/RAMxtnJoZcU8.gif HTTP/1.1 0-132306980/3/21943_ 0.5952369237875930.00.00834.21 45.147.197.190http/1.1aviatorplaygames.com.sh4139956.POST /xmlrpc.php HTTP/1.1 0-132306980/2/20818_ 0.5422217632810.00.001207.85 45.147.197.190http/1.1sh4139718.c.had.su:81GET /.well-known/pki-validation/C027E414291F70C25F9C76FAAB2F061 0-132306980/2/20914_ 0.595743218617270.00.001209.66 45.147.197.190http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 0-132306980/2/20342_ 0.6031357218616470.00.02967.99 45.147.197.190http/1.1authentically-andrea.com.sh4254POST //xmlrpc.php HTTP/1.1 0-132306980/2/21235_ 0.6202133225611530.00.001399.88 45.147.197.190http/1.1aviatorplaygames.com.sh4139956.POST /xmlrpc.php HTTP/1.1 0-132306982/2/20479K 0.6102218459961.90.00845.93 45.147.197.190http/1.1enjoymega.com.sh3823942.b.had.sGET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 0-132306989/9/21144K 0.66022226065728.70.031147.99 45.147.197.190http/1.1enjoymega.com.sh3823942.b.had.sGET /.env HTTP/1.1 0-132306984/4/19987K 0.6501212266314.70.00874.68 45.147.197.190http/1.1enjoymega.com.sh3823942.b.had.sGET /telescope/requests HTTP/1.1 0-132306980/0/21044_ 0.0010488233636570.00.001123.42 172.71.102.116http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 0-132306980/0/21495_ 0.00101032217388650.00.001098.82 167.71.207.127http/1.1authentically-andrea.com.sh4254POST //xmlrpc.php HTTP/1.1 0-132306980/0/20698_ 0.00101239409040.00.00883.56 162.158.87.99http/1.1spacied.com.sh4018938.b.had.su:GET /favicon.ico HTTP/1.1 0-132306980/0/20738_ 0.0010924220063430.00.00898.21 167.71.207.127http/1.1authentically-andrea.com.sh4254POST //xmlrpc.php HTTP/1.1 0-132306980/0/20145_ 0.00102213430390.00.001554.51 45.147.197.190http/1.1sh4137131.c.had.su:81GET /.well-known/pki-validation/C92C95FD346E602E4CFF07F4E53CFC7 0-132306980/0/21257_ 0.00102249217936280.00.001608.04 167.71.207.127http/1.1aviatorplaygames.com.sh4139956.POST /xmlrpc.php HTTP/1.1 0-132306980/0/21418_ 0.00101560213907340.00.00982.54 127.0.0.1http/1.1 0-132306980/0/20032_ 0.0010492219989840.00.001556.76 172.71.102.116http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 0-132306980/0/20622_ 0.00103214777200.00.001565.93 114.119.129.211http/1.1s31.server-panel.net:81GET /sitemap.rss HTTP/1.1 0-132306980/0/19419_ 0.00101853222911530.00.001069.47 167.71.207.127http/1.1aviatorplaygames.com.sh4139956.POST /xmlrpc.php HTTP/1.1 1-1323070111/11/22351K 0.500222876075551.40.541448.62 45.147.197.190http/1.1enjoymega.com.sh3823942.b.had.sGET /info.php HTTP/1.1 1-132307010/1/21834_ 0.4163243708670.00.011258.86 127.0.0.1http/1.1s31.server-panel.net:81GET /filmy/16553-smotret-tayna-korolevy-anny-ili-mushketery-30- 1-132307015/5/22336K 0.51022463668618.30.021330.98 45.147.197.190http/1.1enjoymega.com.sh3823942.b.had.sGET /login.action HTTP/1.1 1-132307010/1/22502_ 0.442736234510970.00.001674.08 45.147.197.190http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 1-132307016/6/21507K 0.49032205707868.10.071063.43 45.147.197.190http/1.1enjoymega.com.sh3823942.b.had.sGET /info.php HTTP/1.1 1-132307017/7/21897K 0.520222337934111.00.111113.28 45.147.197.190http/1.1enjoymega.com.sh3823942.b.had.sGET /.git/config HTTP/1.1 1-132307011/1/21135K 0.5102230289491.10.001313.46 45.147.197.190http/1.1enjoymega.com.sh3823942.b.had.sGET /telescope/requests HTTP/1.1 1-132307010/0/22147_ 0.0010790218667760.00.001187.57 172.71.102.116http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 1-132307010/0/21451_ 0.0010683226686040.00.001389.40 172.71.102.116http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 1-132307010/0/21585_ 0.00101487241107140.00.001179.80 167.71.207.127http/1.1aviatorplaygames.com.sh4139956.POST /xmlrpc.php HTTP/1.1 1-132307010/0/22654_ 0.00101642224359530.00.001163.18 167.71.207.127http/1.1authentically-andrea.com.sh4254POST //xmlrpc.php HTTP/1.1 1-132307010/0/21199_ 0.00101540224648750.00.001130.28 167.71.207.127http/1.1authentically-andrea.com.sh4254POST //xmlrpc.php HTTP/1.1 1-132307010/0/23085_ 0.00103237055720.00.00907.77 162.158.146.232http/1.1kava-io.com.sh4018938.b.had.su:GET /assets/images/carl-raw-m3hn2kn5bns-unsplash.jpg HTTP/1.1 1-132307010/0/22252_ 0.00103241973160.00.00891.53 95.163.255.41http/1.1justrapeher.com.sh4310701.c.hadGET /wp-content/uploads/2017/07/M1976-UA-03-2shake.mkv_snapshot 1-132307010/0/22219_ 0.0010614223816910.00.001141.34 172.71.102.116http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 1-132307010/0/21611_ 0.00104221589120.00.00851.42 172.70.92.146http/1.1s31.server-panel.net:81GET /dodge/1999-dodge-ram-r2upmp9/ HTTP/1.1 1-132307010/0/21620_ 0.001010233920470.00.001165.10 83.86.236.28http/1.1xn--80aikhbrhr.xn--j1amh.sh4142GET /engine/classes/min/index.php?charset=utf-8&f=engine/editor 1-132307010/0/22257_ 0.0010739235386430.00.001319.62 172.71.102.116http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 1-132307010/0/21949_ 0.00101450237282730.00.001030.97 167.71.207.127http/1.1authentically-andrea.com.sh4254POST //xmlrpc.php HTTP/1.1 1-132307010/0/21945_ 0.00101654224534010.00.00941.19 167.71.207.127http/1.1aviatorplaygames.com.sh4139956.POST /xmlrpc.php HTTP/1.1 1-132307010/0/21692_ 0.0010761247055710.00.001101.86 172.71.102.116http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 1-132307010/0/22054_ 0.0010700229844640.00.001164.02 172.71.102.116http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 1-132307010/0/23204_ 0.0010740236788110.00.002275.49 172.71.102.116http/1.1eu-
The server-status page (usually /server-status) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb31b96b05fdb96b05fdfc96ba79
Apache Status Apache Server Status for www.enjoymega.com (via 45.147.197.190) Server Version: Apache/2.4.55 (cPanel) OpenSSL/1.1.1t mod_bwlimited/1.4 Phusion_Passenger/6.0.17 Server MPM: worker Server Built: Jan 18 2023 17:54:12 Current Time: Tuesday, 28-Mar-2023 04:00:51 EEST Restart Time: Wednesday, 22-Mar-2023 18:38:54 EET Parent Server Config. Generation: 133 Parent Server MPM Generation: 132 Server uptime: 5 days 8 hours 21 minutes 56 seconds Server load: 3.16 3.10 2.91 Total accesses: 3079048 - Total Traffic: 160.6 GB - Total Duration: 3267427763 CPU Usage: u183.58 s85.12 cu16331.3 cs4588.52 - 4.59% CPU load 6.66 requests/sec - 364.4 kB/second - 54.7 kB/request - 1061.18 ms/request 14 requests currently being processed, 111 idle workers ____________KKK__________K_K_KKK___________________K___KK_______ ________________K_______________________WW___________________... ...................... Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-132306980/1/21190_ 0.519833221165770.00.00848.92 45.147.197.190http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 0-132306980/1/21658_ 0.5472558234021760.00.001424.92 45.147.197.190http/1.1aviatorplaygames.com.sh4139956.POST /xmlrpc.php HTTP/1.1 0-132306980/1/21763_ 0.514549214506660.00.011528.39 45.147.197.190http/1.1the-raw-recipe.com.sh3891697.c.POST /wp-login.php HTTP/1.1 0-132306980/1/22052_ 0.47108234417130.00.00847.37 127.0.0.1http/1.1s31.server-panel.net:81GET /server-status?auto HTTP/1.1 0-132306980/1/20673_ 0.5281635211855480.00.00951.83 45.147.197.190http/1.1authentically-andrea.com.sh4254POST //xmlrpc.php HTTP/1.1 0-132306980/1/21406_ 0.46106205923600.00.011234.29 127.0.0.1http/1.1s31.server-panel.net:81GET /filmy/16413-smotret-bbc-velikie-voiny-2007-onlayn-v-hd.htm 0-132306980/12/21330_ 0.5716210429450.00.11857.49 45.147.197.190http/1.1playtlauncher.click.sh4018938.bGET /images/RAMxtnJoZcU8.gif HTTP/1.1 0-132306980/3/21943_ 0.5952369237875930.00.00834.21 45.147.197.190http/1.1aviatorplaygames.com.sh4139956.POST /xmlrpc.php HTTP/1.1 0-132306980/2/20818_ 0.5422217632810.00.001207.85 45.147.197.190http/1.1sh4139718.c.had.su:81GET /.well-known/pki-validation/C027E414291F70C25F9C76FAAB2F061 0-132306980/2/20914_ 0.595743218617270.00.001209.66 45.147.197.190http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 0-132306980/2/20342_ 0.6031357218616470.00.02967.99 45.147.197.190http/1.1authentically-andrea.com.sh4254POST //xmlrpc.php HTTP/1.1 0-132306980/2/21235_ 0.6202133225611530.00.001399.88 45.147.197.190http/1.1aviatorplaygames.com.sh4139956.POST /xmlrpc.php HTTP/1.1 0-132306982/2/20479K 0.6102218459961.90.00845.93 45.147.197.190http/1.1enjoymega.com.sh3823942.b.had.sGET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 0-132306989/9/21144K 0.66022226065728.70.031147.99 45.147.197.190http/1.1enjoymega.com.sh3823942.b.had.sGET /.env HTTP/1.1 0-132306984/4/19987K 0.6501212266314.70.00874.68 45.147.197.190http/1.1enjoymega.com.sh3823942.b.had.sGET /telescope/requests HTTP/1.1 0-132306980/0/21044_ 0.0010488233636570.00.001123.42 172.71.102.116http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 0-132306980/0/21495_ 0.00101032217388650.00.001098.82 167.71.207.127http/1.1authentically-andrea.com.sh4254POST //xmlrpc.php HTTP/1.1 0-132306980/0/20698_ 0.00101239409040.00.00883.56 162.158.87.99http/1.1spacied.com.sh4018938.b.had.su:GET /favicon.ico HTTP/1.1 0-132306980/0/20738_ 0.0010924220063430.00.00898.21 167.71.207.127http/1.1authentically-andrea.com.sh4254POST //xmlrpc.php HTTP/1.1 0-132306980/0/20145_ 0.00102213430390.00.001554.51 45.147.197.190http/1.1sh4137131.c.had.su:81GET /.well-known/pki-validation/C92C95FD346E602E4CFF07F4E53CFC7 0-132306980/0/21257_ 0.00102249217936280.00.001608.04 167.71.207.127http/1.1aviatorplaygames.com.sh4139956.POST /xmlrpc.php HTTP/1.1 0-132306980/0/21418_ 0.00101560213907340.00.00982.54 127.0.0.1http/1.1 0-132306980/0/20032_ 0.0010492219989840.00.001556.76 172.71.102.116http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 0-132306980/0/20622_ 0.00103214777200.00.001565.93 114.119.129.211http/1.1s31.server-panel.net:81GET /sitemap.rss HTTP/1.1 0-132306980/0/19419_ 0.00101853222911530.00.001069.47 167.71.207.127http/1.1aviatorplaygames.com.sh4139956.POST /xmlrpc.php HTTP/1.1 1-1323070111/11/22351K 0.500222876075551.40.541448.62 45.147.197.190http/1.1enjoymega.com.sh3823942.b.had.sGET /info.php HTTP/1.1 1-132307010/1/21834_ 0.4163243708670.00.011258.86 127.0.0.1http/1.1s31.server-panel.net:81GET /filmy/16553-smotret-tayna-korolevy-anny-ili-mushketery-30- 1-132307015/5/22336K 0.51022463668618.30.021330.98 45.147.197.190http/1.1enjoymega.com.sh3823942.b.had.sGET /login.action HTTP/1.1 1-132307010/1/22502_ 0.442736234510970.00.001674.08 45.147.197.190http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 1-132307016/6/21507K 0.49032205707868.10.071063.43 45.147.197.190http/1.1enjoymega.com.sh3823942.b.had.sGET /info.php HTTP/1.1 1-132307017/7/21897K 0.520222337934111.00.111113.28 45.147.197.190http/1.1enjoymega.com.sh3823942.b.had.sGET /.git/config HTTP/1.1 1-132307011/1/21135K 0.5102230289491.10.001313.46 45.147.197.190http/1.1enjoymega.com.sh3823942.b.had.sGET /telescope/requests HTTP/1.1 1-132307010/0/22147_ 0.0010790218667760.00.001187.57 172.71.102.116http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 1-132307010/0/21451_ 0.0010683226686040.00.001389.40 172.71.102.116http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 1-132307010/0/21585_ 0.00101487241107140.00.001179.80 167.71.207.127http/1.1aviatorplaygames.com.sh4139956.POST /xmlrpc.php HTTP/1.1 1-132307010/0/22654_ 0.00101642224359530.00.001163.18 167.71.207.127http/1.1authentically-andrea.com.sh4254POST //xmlrpc.php HTTP/1.1 1-132307010/0/21199_ 0.00101540224648750.00.001130.28 167.71.207.127http/1.1authentically-andrea.com.sh4254POST //xmlrpc.php HTTP/1.1 1-132307010/0/23085_ 0.00103237055720.00.00907.77 162.158.146.232http/1.1kava-io.com.sh4018938.b.had.su:GET /assets/images/carl-raw-m3hn2kn5bns-unsplash.jpg HTTP/1.1 1-132307010/0/22252_ 0.00103241973160.00.00891.53 95.163.255.41http/1.1justrapeher.com.sh4310701.c.hadGET /wp-content/uploads/2017/07/M1976-UA-03-2shake.mkv_snapshot 1-132307010/0/22219_ 0.0010614223816910.00.001141.34 172.71.102.116http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 1-132307010/0/21611_ 0.00104221589120.00.00851.42 172.70.92.146http/1.1s31.server-panel.net:81GET /dodge/1999-dodge-ram-r2upmp9/ HTTP/1.1 1-132307010/0/21620_ 0.001010233920470.00.001165.10 83.86.236.28http/1.1xn--80aikhbrhr.xn--j1amh.sh4142GET /engine/classes/min/index.php?charset=utf-8&f=engine/editor 1-132307010/0/22257_ 0.0010739235386430.00.001319.62 172.71.102.116http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 1-132307010/0/21949_ 0.00101450237282730.00.001030.97 167.71.207.127http/1.1authentically-andrea.com.sh4254POST //xmlrpc.php HTTP/1.1 1-132307010/0/21945_ 0.00101654224534010.00.00941.19 167.71.207.127http/1.1aviatorplaygames.com.sh4139956.POST /xmlrpc.php HTTP/1.1 1-132307010/0/21692_ 0.0010761247055710.00.001101.86 172.71.102.116http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 1-132307010/0/22054_ 0.0010700229844640.00.001164.02 172.71.102.116http/1.1eu-dl.com.sh3891632.c.had.su:44POST //xmlrpc.php HTTP/1.1 1-132307010/0/23204_ 0.0010740236788110.00.002275.49 172.71.102.116http/1.1eu-