This Metasploit module leverages a privilege escalation on OrientDB to execute unsandboxed OS commands. All versions from 2.2.2 up to 2.2.22 should be vulnerable.
6b95d890105219958f616c483516ec8ac37b8e04b1fd345dac0b2ebc8176073c
Metasploit Pro, Express, Ultimate, and Community suffer from a cross site request forgery vulnerability.
4f975ffb94cadeb9b86881ec0afee39d875da87033f9c6822af9146e5a9a4d61