Hackers exploit Sangoma Switchvox flaw to deploy reverse shells

Executive Summary

Attackers are exploiting CVE-2026-9586, an unauthenticated SQL injection in the Sangoma Switchvox VoIP platform, enabling remote code execution and deployment of reverse shells. The flaw allows attackers to inject malicious SQL, bypass authentication, and execute arbitrary commands on the server. Security teams should patch or mitigate immediately.


Intelligence Metadata - Source Publisher: Bleeping Computer - Published Date: 2026-09-02T21:00:13+00:00 - Category: threat-intel

Original Description: Attackers are actively exploiting CVE-2026-9586, an unauthenticated SQL injection vulnerability in the Sangoma Switchvox VoIP platform that can lead to remote code execution. [...]

"He who knows, does not speak. He who speaks, does not know."

— Lao Tzu
Source: Bleeping Computer