Skip to main content
CyberSingle-sourceMediumDeveloping
5.5

Sangoma Switchvox SQLi flaw exploited in the wild for reverse shells

Threat actors are actively exploiting CVE-2026-9586, an unauthenticated SQL injection vulnerability in Sangoma Switchvox VoIP systems, to achieve remote code execution and deploy reverse shells. The flaw enables full system compromise of affected PBX appliances, which are often internet-facing and trusted on internal networks. This active exploitation elevates the risk for organizations using Switchvox, and immediate patching is advised.

BleepingComputerabout 23 hours agoengCredibility 55%View source

Score Breakdown

Mosaic Score5.5
Confidence0.9
Significance0.5
Source credibility0.6
Source

Related signals

5 found