The server-status page (usually /server-status) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb31199ddcc7199ddcc7e485f2cc
Apache Status Apache Server Status for www.michi.wcloudt.de (via 127.0.0.1) Server Version: Apache/2.4.38 (Debian) mod_fcgid/2.3.9 OpenSSL/1.1.1n Server MPM: prefork Server Built: 2023-04-21T22:01:00 Current Time: Thursday, 21-Mar-2024 09:48:36 CET Restart Time: Tuesday, 19-Mar-2024 14:07:57 CET Parent Server Config. Generation: 19 Parent Server MPM Generation: 18 Server uptime: 1 day 19 hours 40 minutes 39 seconds Server load: 7.01 6.86 5.98 Total accesses: 645809 - Total Traffic: 7.0 GB - Total Duration: 628416193 CPU Usage: u87.11 s70.22 cu68300.7 cs35514.7 - 66.1% CPU load 4.11 requests/sec - 46.6 kB/second - 11.3 kB/request - 973.068 ms/request 5 requests currently being processed, 6 idle workers __..___W.WW..WW.._.............................................. ................................................................ ...................... Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process <SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-1824520/14/54128_ 0.0100508043890.00.01702.85 127.0.0.1http/1.1patrickwunner.de:7080GET /img/xmrlpc.php?p= HTTP/1.0 1-18243070/370/51947_ 0.7400490117570.01.33533.90 127.0.0.1http/1.1default-62_108_32_130:7081GET /debug/default/view?panel=config HTTP/1.0 2-18-0/0/52724. 0.00660500823370.00.00540.04 127.0.0.1http/1.1 3-18-0/0/51008. 0.00360467143780.00.00513.54 127.0.0.1http/1.1 4-18242900/468/50648_ 0.9500478239150.02.35456.49 127.0.0.1http/1.1default-62_108_32_130:7081GET /about HTTP/1.0 5-18242880/459/50613_ 0.9400447241710.01.92424.52 127.0.0.1http/1.1patrickwunner.de:7080GET /wp-admin/css/colors/coffee/xmrlpc.php?p= HTTP/1.0 6-18242890/420/46799_ 0.8700447833600.01.69493.24 127.0.0.1http/1.1default-62_108_32_130:7081GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 7-18296500/234/43668W 0.4700417031710.00.90339.71 127.0.0.1http/1.1default-62_108_32_130:7081GET /server-status HTTP/1.0 8-18-0/0/44736. 0.00653040413625200.00.00437.14 127.0.0.1http/1.1 9-18243350/470/38549W 0.9450385175240.01.93338.01 66.249.79.33http/1.1hochzeitsfotograf.mt-fotos.de:7GET /robots.txt HTTP/1.0 10-18298670/169/34868W 0.3720333457440.01.44946.15 66.249.79.134http/1.1karate-porz.de:7081GET /aktuelles/ HTTP/1.0 11-18-0/0/24776. 0.00612926275549800.00.00283.12 127.0.0.1http/1.1 12-18-0/0/23359. 0.00480233602520.00.00282.37 127.0.0.1http/1.1 13-18297860/159/14100W 0.3410150411510.01.32175.60 23.158.232.6http/1.1mann-consulting.de:7080GET /matrix-pos/ HTTP/1.0 14-1811620/82/13201W 0.1470142715250.00.35117.46 177.130.249.153http/1.1popescus.de:7081POST /xmlrpc.php HTTP/1.0 15-18-0/0/10537. 0.0062094535070.00.00124.64 127.0.0.1http/1.1 16-18-0/0/7523. 0.0067077791890.00.0059.59 127.0.0.1http/1.1 17-1814550/100/4396_ 0.140050773510.00.1724.42 127.0.0.1http/1.1default-62_108_32_130:7081GET /v2/_catalog HTTP/1.0 18-15-0/0/1999. 0.00408554819906730.00.0010.61 127.0.0.1http/1.1 19-16-0/0/3889. 0.002842038389110.00.0020.45 127.0.0.1http/1.1 20-15-0/0/639. 0.0043631196911865130.00.002.72 127.0.0.1http/1.1 21-15-0/0/2866. 0.004351021981070.00.0031.63 127.0.0.1http/1.1 22-15-0/0/596. 0.00424316487780.00.0012.07 127.0.0.1http/1.1 23-15-0/0/4380. 0.0043591315036038930.00.00196.40 127.0.0.1http/1.1 24-15-0/0/2684. 0.004344023993810.00.0023.54 127.0.0.1http/1.1 25-15-0/0/67. 0.0043701851416190.00.000.36 127.0.0.1http/1.1 26-15-0/0/814. 0.00408164417368660.00.006.77 127.0.0.1http/1.1 27-15-0/0/603. 0.00434804868920.00.002.52 127.0.0.1http/1.1 28-15-0/0/529. 0.00437318685858550.00.003.20 127.0.0.1http/1.1 29-15-0/0/33. 0.00434302016000.00.000.22 127.0.0.1http/1.1 30-15-0/0/450. 0.00324906489500.00.002.42 127.0.0.1http/1.1 31-15-0/0/12. 0.0043621811027980.00.000.08 127.0.0.1http/1.1 32-15-0/0/373. 0.00437123904443140.00.002.92 127.0.0.1http/1.1 33-15-0/0/44. 0.004249612055460.00.000.18 127.0.0.1http/1.1 34-15-0/0/17. 0.00437801340200.00.000.11 127.0.0.1http/1.1 35-15-0/0/252. 0.00425129514422020.00.002.80 127.0.0.1http/1.1 36-15-0/0/423. 0.0043723066613440.00.002.96 127.0.0.1http/1.1 37-15-0/0/803. 0.0043665387607360.00.003.48 127.0.0.1http/1.1 38-15-0/0/504. 0.00437715832090.00.002.51 127.0.0.1http/1.1 39-15-0/0/117. 0.00436927563182850.00.000.56 127.0.0.1http/1.1 40-15-0/0/69. 0.00436101786860.00.000.20 127.0.0.1http/1.1 41-10-0/0/79. 0.007422703371870.00.000.86 127.0.0.1http/1.1 42-5-0/0/11. 0.0013080601030270.00.000.02 127.0.0.1http/1.1 43-5-0/0/2. 0.0013085131030620800.00.000.00 127.0.0.1http/1.1 44-5-0/0/4. 0.00130810237371091790.00.000.01 127.0.0.1http/1.1 45-5-0/0/10. 0.0013075929951338550.00.000.18 127.0.0.1http/1.1 46-5-0/0/3. 0.0013085230841618030.00.000.00 127.0.0.1http/1.1 47-5-0/0/30. 0.001308818631248730.00.000.06 127.0.0.1http/1.1 48-5-0/0/1152. 0.00126853010782650.00.007.20 127.0.0.1http/1.1 49-5-0/0/1. 0.0013085430796615920.00.000.00 127.0.0.1http/1.1 50-5-0/0/10. 0.001307712621270930.00.000.03 127.0.0.1http/1.1 51-5-0/0/9. 0.0013085829616594900.00.000.01 127.0.0.1http/1.1 52-5-0/0/12. 0.0013078815181309650.00.000.03 127.0.0.1http/1.1 53-5-0/0/7. 0.001307721691271230.00.000.01 127.0.0.1http/1.1 54-5-0/0/6. 0.00130784171053950.00.000.01 127.0.0.1http/1.1 55-5-0/0/2. 0.0013079881273320.00.000.03 127.0.0.1http/1.1 56-5-0/0/12. 0.001308420479170.00.000.05 127.0.0.1http/1.1 57-5-0/0/8. 0.001308360602550.00.000.02 127.0.0.1http/1.1 58-5-0/0/4. 0.0013080011271160.00.000.01 127.0.0.1http/1.1 59-5-0/0/4. 0.001308300940180.00.000.02 127.0.0.1http/1.1 60-5-0/0/6. 0.00130805