Tech News
← Home  ·  All topics

Sangoma

1 GoKawiil brief on this topic

Attackers actively exploit critical SQL injection flaw in Sangoma Switchvox VoIP systems

Security firm Horizon3 says hackers are exploiting CVE-2026-9586, an unauthenticated SQL injection bug in Sangoma Switchvox's /pa endpoint that allows remote code execution. Honeypot data shows a single source IP rapidly hitting multiple exposed systems, deploying reverse shells and exfiltrating process data. Sangoma patched the flaw, one of 12 reported by Horizon3, in version 8.4.0.2 released July 14.