The server-status page (usually /server-status
) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb316fc8655c6fc8655cd9e89204
Apache Status Apache Server Status for 84-201-165-239.nip.io (via 127.0.0.1) Server Version: Apache/2.4.41 (Ubuntu) Server MPM: prefork Server Built: 2023-01-23T18:36:09 Current Time: Tuesday, 07-Feb-2023 21:11:16 UTC Restart Time: Tuesday, 07-Feb-2023 06:06:26 UTC Parent Server Config. Generation: 1 Parent Server MPM Generation: 0 Server uptime: 15 hours 4 minutes 49 seconds Server load: 0.01 0.22 0.17 Total accesses: 467 - Total Traffic: 4.2 MB - Total Duration: 143888 CPU Usage: u18.35 s4.77 cu.01 cs0 - .0426% CPU load .0086 requests/sec - 80 B/second - 9.2 kB/request - 308.111 ms/request 2 requests currently being processed, 5 idle workers W___L__......................................................... ................................................................ ...................... Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-06800/74/74W 0.430061960.00.500.50 127.0.0.1http/1.1vvs-vm-01.ru-central1.internal:GET /server-status HTTP/1.0 1-06810/71/71_ 13.6210477760.00.440.44 127.0.0.1http/1.1vvs-vm-01.ru-central1.internal:GET / HTTP/1.0 2-06820/75/75_ 0.480017550.00.370.37 127.0.0.1http/1.1vvs-vm-01.ru-central1.internal:GET /telescope/requests HTTP/1.0 3-06830/73/73_ 0.750050160.00.920.92 127.0.0.1http/1.1vvs-vm-01.ru-central1.internal:GET /ecp/Current/exporttool/microsoft.exchange.ediscovery.expor 4-06840/75/75_ 0.510031020.00.590.59 127.0.0.1http/1.1vvs-vm-01.ru-central1.internal:GET /.git/config HTTP/1.0 5-0128020/66/66_ 0.660090940.00.440.44 127.0.0.1http/1.1vvs-vm-01.ru-central1.internal:GET /info.php HTTP/1.0 6-0170410/34/34_ 2.1300709460.00.930.93 127.0.0.1http/1.1vvs-vm-01.ru-central1.internal:GET /debug/default/view?panel=config HTTP/1.0 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request DurSum of milliseconds required to process all requests ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot Apache/2.4.41 (Ubuntu) Server at 84-201-165-239.nip.io Port 80
The server-status page (usually /server-status
) allows server administrators to find out how well their server is performing.
This is a HTML page that gives the current server statistics such as the server version, up time,cpu, ram, and information about requests made to the server.
This information can be very useful if the application is sent sensitive information as GET requests. If you monitor this page you might be able to find CSRF tokens, API keys, hidden paths, and other sensitive information being sent to the server.
https://medium.com/@ghostlulzhacks/apache-server-status-a70abed83f5a
Severity: medium
Fingerprint: ee80c6706842d3ef6842d3ef6325bb316325bb313b075f543b075f54d1d06c3c
Apache Status Apache Server Status for 84.201.165.239 (via 127.0.0.1) Server Version: Apache/2.4.41 (Ubuntu) Server MPM: prefork Server Built: 2023-01-23T18:36:09 Current Time: Tuesday, 07-Feb-2023 06:18:54 UTC Restart Time: Tuesday, 07-Feb-2023 06:06:26 UTC Parent Server Config. Generation: 1 Parent Server MPM Generation: 0 Server uptime: 12 minutes 27 seconds Server load: 0.00 0.06 0.08 Total accesses: 2 - Total Traffic: 22 kB - Total Duration: 94 CPU Usage: u.07 s.1 cu0 cs0 - .0228% CPU load .00268 requests/sec - 30 B/second - 11.0 kB/request - 47 ms/request 2 requests currently being processed, 3 idle workers ___WW........................................................... ................................................................ ...................... Scoreboard Key: "_" Waiting for Connection, "S" Starting up, "R" Reading Request, "W" Sending Reply, "K" Keepalive (read), "D" DNS Lookup, "C" Closing connection, "L" Logging, "G" Gracefully finishing, "I" Idle cleanup of worker, "." Open slot with no current process SrvPIDAccMCPU SSReqDurConnChildSlotClientProtocolVHostRequest 0-06800/1/1_ 0.0015946930.00.010.01 127.0.0.1http/1.1vvs-vm-01.ru-central1.internal:GET / HTTP/1.0 2-06820/1/1_ 0.000000.00.010.01 127.0.0.1http/1.1vvs-vm-01.ru-central1.internal:GET / HTTP/1.0 3-06831/1/1C 0.000000.60.000.00 127.0.0.1http/1.1vvs-vm-01.ru-central1.internal:GET /.DS_Store HTTP/1.0 4-06840/0/0W 0.000000.00.000.00 127.0.0.1http/1.1vvs-vm-01.ru-central1.internal:GET /server-status HTTP/1.0 SrvChild Server number - generation PIDOS process ID AccNumber of accesses this connection / this child / this slot MMode of operation CPUCPU usage, number of seconds SSSeconds since beginning of most recent request ReqMilliseconds required to process most recent request DurSum of milliseconds required to process all requests ConnKilobytes transferred this connection ChildMegabytes transferred this child SlotTotal megabytes transferred this slot Apache/2.4.41 (Ubuntu) Server at 84.201.165.239 Port 80
The application has Symfony profiling enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 407cf4363b0e62fafca67e077061d6e37061d6e37061d6e37061d6e37061d6e3
Symfony profiler enabled: http://84.201.165.239:8071/_profiler/empty/search/results