CVE-2020-9495 PoC CVE-2020-9495 is medium severity LDAP injection vulnerability in Apache Archiva versions before 225 It allows an attacker to retrieve any LDAP attribute values of users that exist on the LDAP server From the official Apache Archiva advisory: By providing special values to the archiva login form a attacker is able to retrieve user attribute data from the c