The server-status page (usually /server-status
) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb3199e8dc6199e8dc61f4ee6933
Apache Status Apache Server Status for www.vpn.cortexpark12.dk Server Version: Apache/2.2.34 (Unix) PHP/5.2.17 Server Built: Oct 8 2019 02:07:04 Current Time: Tuesday, 14-Feb-2023 09:08:01 CET Restart Time: Tuesday, 14-Feb-2023 06:15:06 CET Parent Server Generation: 3 Server uptime: 2 hours 52 minutes 54 seconds Total accesses: 2455 - Total Traffic: 7.4 MB CPU Usage: u.4 s.09 cu0 cs0 - .00472% CPU load .237 requests/sec - 748 B/second - 3162 B/request 1 requests currently being processed, 30 idle workers __________________________W____................................. ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqConnChildSlotClientVHostRequest 0-3546710/10/83_ 0.01158240.00.020.16 81.19.232.105www.sydsjaellandsgarderforeningGET /pdf/gen_ref_20.pdf HTTP/1.0 1-3546720/8/80_ 0.0211310.00.010.09 81.19.232.105webhotel5.webhosting.dkGET /favicon.ico HTTP/1.0 2-3546730/7/78_ 0.011920.00.010.16 40.94.103.71webhotel5.webhosting.dkGET / HTTP/1.0 3-3546740/7/78_ 0.016910.00.010.12 81.19.232.105webhotel5.webhosting.dkwww.saintlouislifeteen.org/xxx/exploited-moms-big-tits HTTP/1.0 4-3546750/7/77_ 0.03611070.00.030.40 114.119.152.204www.karenborup.dkGET /hjaelp.html HTTP/1.0 5-3546760/6/76_ 0.0115330.00.010.24 81.19.232.105webhotel5.webhosting.dkGET / HTTP/1.0 6-3546770/7/76_ 0.016870.00.020.18 216.244.66.238www.lillekrabbe.dkGET /lab/tuts/basicdoll/010pantsoutline.gif HTTP/1.0 7-3546780/6/75_ 0.0114990.00.060.19 216.244.66.238www.lillekrabbe.dkGET /lab/tuts/basicdoll/035top.gif HTTP/1.0 8-3546790/7/77_ 0.009100.00.000.21 93.158.90.71webhotel5.webhosting.dkGET /ads.txt HTTP/1.0 9-3546800/7/77_ 0.02000.00.280.51 172.104.139.59webhotel5.webhosting.dkGET /.vscode/sftp.json HTTP/1.0 10-3546810/7/77_ 0.0111430.00.010.25 81.19.232.105webhotel5.webhosting.dkGET / HTTP/1.0 11-3546820/7/77_ 0.009100.00.010.10 93.158.90.65webhotel5.webhosting.dkGET /robots.txt HTTP/1.0 12-3546830/8/78_ 0.011500.00.020.11 40.94.103.46webhotel5.webhosting.dkGET /favicon.ico HTTP/1.0 13-3546840/6/76_ 0.0176660.00.120.22 81.19.232.105www.mercasol-frv.dkGET /Aviser/BTPresse2005.pdf HTTP/1.0 14-3546850/6/76_ 0.016210.00.010.18 81.19.232.105webhotel5.webhosting.dkGET /robots.txt HTTP/1.0 15-3546860/7/77_ 0.019100.00.000.18 93.158.90.69webhotel5.webhosting.dkGET /humans.txt HTTP/1.0 16-3546870/7/78_ 0.0114350.00.000.22 192.30.83.184webhotel5.webhosting.dkGET / HTTP/1.0 17-3546880/7/76_ 0.015230.00.050.38 54.36.149.77webhotel5.webhosting.dkGET / HTTP/1.0 18-3546890/7/77_ 0.016710.00.000.09 81.19.232.89webhotel5.webhosting.dkGET / HTTP/1.0 19-3546900/6/75_ 0.01030.00.010.12 45.33.104.114webhotel5.webhosting.dkGET / HTTP/1.0 20-3546910/7/77_ 0.011020.00.010.15 81.19.232.89webhotel5.webhosting.dkGET / HTTP/1.0 21-3547080/7/77_ 0.01120.00.010.10 81.19.232.105webhotel5.webhosting.dkGET / HTTP/1.0 22-3547130/6/76_ 0.0312830.00.020.13 81.19.232.105webhotel5.webhosting.dkGET / HTTP/1.0 23-3547140/6/76_ 0.01060.00.010.13 81.19.232.105webhotel5.webhosting.dkGET / HTTP/1.0 24-3547600/6/75_ 0.0213310.00.000.10 81.19.232.105webhotel5.webhosting.dkT /app/ext.php?u=http://backlinkcreater15.blogspot.com HTTP/1.0 25-3547890/7/77_ 0.01020.00.010.22 172.104.139.59webhotel5.webhosting.dkGET / HTTP/1.0 26-3547900/6/73W 0.01000.00.100.33 45.33.104.114webhotel5.webhosting.dkGET /server-status HTTP/1.0 27-3547910/6/75_ 0.01130260.00.000.15 81.19.232.105webhotel5.webhosting.dkGET / HTTP/1.0 28-3548010/6/75_ 0.015210.00.060.61 54.36.148.205webhotel5.webhosting.dkGET /robots.txt HTTP/1.0 29-3548240/7/76_ 0.0112720.00.000.13 81.19.232.89webhotel5.webhosting.dkGET / HTTP/1.0 30-3569520/1/68_ 0.00163350.00.001.03 77.241.136.55www.mercasol-frv.dkGET /favicon.ico HTTP/1.0 31-2-0/0/30. 0.0247400.00.000.12 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 32-0-0/0/19. 0.04767400.00.000.05 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 33-0-0/0/19. 0.04767400.00.000.02 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 34-0-0/0/18. 0.04767400.00.000.01 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot Apache Server at www.vpn.cortexpark12.dk Port 80
The server-status page (usually /server-status
) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb3199e8dc6199e8dc61fd293579
Apache Status Apache Server Status for www.vpn.cortexpark12.dk Server Version: Apache/2.2.34 (Unix) PHP/5.2.17 Server Built: Oct 8 2019 02:07:04 Current Time: Tuesday, 14-Feb-2023 09:08:05 CET Restart Time: Tuesday, 14-Feb-2023 06:15:06 CET Parent Server Generation: 3 Server uptime: 2 hours 52 minutes 59 seconds Total accesses: 2459 - Total Traffic: 7.4 MB CPU Usage: u.4 s.1 cu0 cs0 - .00482% CPU load .237 requests/sec - 748 B/second - 3158 B/request 1 requests currently being processed, 30 idle workers _______W_______________________................................. ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ ................................................................ Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqConnChildSlotClientVHostRequest 0-3546710/11/84_ 0.01310.00.020.16 172.104.139.59webhotel5.webhosting.dkGET /login.action HTTP/1.0 1-3546720/8/80_ 0.0211710.00.010.09 81.19.232.105webhotel5.webhosting.dkGET /favicon.ico HTTP/1.0 2-3546730/7/78_ 0.012420.00.010.16 40.94.103.71webhotel5.webhosting.dkGET / HTTP/1.0 3-3546740/7/78_ 0.017410.00.010.12 81.19.232.105webhotel5.webhosting.dkwww.saintlouislifeteen.org/xxx/exploited-moms-big-tits HTTP/1.0 4-3546750/7/77_ 0.03651070.00.030.40 114.119.152.204www.karenborup.dkGET /hjaelp.html HTTP/1.0 5-3546760/7/77_ 0.01310.00.010.25 45.33.104.114webhotel5.webhosting.dkGET /config.json HTTP/1.0 6-3546770/7/76_ 0.017270.00.020.18 216.244.66.238www.lillekrabbe.dkGET /lab/tuts/basicdoll/010pantsoutline.gif HTTP/1.0 7-3546780/6/75W 0.01000.00.060.19 81.19.232.105webhotel5.webhosting.dkGET /server-status HTTP/1.0 8-3546790/7/77_ 0.009600.00.000.21 93.158.90.71webhotel5.webhosting.dkGET /ads.txt HTTP/1.0 9-3546800/7/77_ 0.02400.00.280.51 172.104.139.59webhotel5.webhosting.dkGET /.vscode/sftp.json HTTP/1.0 10-3546810/7/77_ 0.0111830.00.010.25 81.19.232.105webhotel5.webhosting.dkGET / HTTP/1.0 11-3546820/7/77_ 0.009600.00.010.10 93.158.90.65webhotel5.webhosting.dkGET /robots.txt HTTP/1.0 12-3546830/8/78_ 0.011900.00.020.11 40.94.103.46webhotel5.webhosting.dkGET /favicon.ico HTTP/1.0 13-3546840/6/76_ 0.0180660.00.120.22 81.19.232.105www.mercasol-frv.dkGET /Aviser/BTPresse2005.pdf HTTP/1.0 14-3546850/6/76_ 0.016610.00.010.18 81.19.232.105webhotel5.webhosting.dkGET /robots.txt HTTP/1.0 15-3546860/7/77_ 0.019600.00.000.18 93.158.90.69webhotel5.webhosting.dkGET /humans.txt HTTP/1.0 16-3546870/7/78_ 0.0119350.00.000.22 192.30.83.184webhotel5.webhosting.dkGET / HTTP/1.0 17-3546880/7/76_ 0.015630.00.050.38 54.36.149.77webhotel5.webhosting.dkGET / HTTP/1.0 18-3546890/7/77_ 0.017210.00.000.09 81.19.232.89webhotel5.webhosting.dkGET / HTTP/1.0 19-3546900/6/75_ 0.01430.00.010.12 45.33.104.114webhotel5.webhosting.dkGET / HTTP/1.0 20-3546910/7/77_ 0.011420.00.010.15 81.19.232.89webhotel5.webhosting.dkGET / HTTP/1.0 21-3547080/7/77_ 0.01520.00.010.10 81.19.232.105webhotel5.webhosting.dkGET / HTTP/1.0 22-3547130/6/76_ 0.0313330.00.020.13 81.19.232.105webhotel5.webhosting.dkGET / HTTP/1.0 23-3547140/6/76_ 0.01560.00.010.13 81.19.232.105webhotel5.webhosting.dkGET / HTTP/1.0 24-3547600/6/75_ 0.0213710.00.000.10 81.19.232.105webhotel5.webhosting.dkT /app/ext.php?u=http://backlinkcreater15.blogspot.com HTTP/1.0 25-3547890/7/77_ 0.01420.00.010.22 172.104.139.59webhotel5.webhosting.dkGET / HTTP/1.0 26-3547900/7/74_ 0.02430.00.110.33 45.33.104.114webhotel5.webhosting.dkGET /server-status HTTP/1.0 27-3547910/6/75_ 0.01135260.00.000.15 81.19.232.105webhotel5.webhosting.dkGET / HTTP/1.0 28-3548010/6/75_ 0.015710.00.060.61 54.36.148.205webhotel5.webhosting.dkGET /robots.txt HTTP/1.0 29-3548240/7/76_ 0.0113120.00.000.13 81.19.232.89webhotel5.webhosting.dkGET / HTTP/1.0 30-3569520/2/69_ 0.00410.00.001.03 81.19.232.105webhotel5.webhosting.dkGET /telescope/requests HTTP/1.0 31-2-0/0/30. 0.0247800.00.000.12 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 32-0-0/0/19. 0.04767900.00.000.05 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 33-0-0/0/19. 0.04767900.00.000.02 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 34-0-0/0/18. 0.04767900.00.000.01 ::1webhotel5-64bit.webhosting.dkOPTIONS * HTTP/1.0 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot Apache Server at www.vpn.cortexpark12.dk Port 443