Attackers Exploit Critical Switchvox Flaw to Deploy Reverse Shells Without Credentials

Source: The Hacker News

Threat actors are exploiting a severe security vulnerability in Sangoma Switchvox, an enterprise VoIP platform, that could allow unauthenticated remote code execution.

The vulnerability in question is CVE-2026-9586 (CVSS score: 9.3), a critical unauthenticated SQL injection vulnerability in Sangoma


Read original