SRA Labs
  • Menu ▾
    • Posts
    • Tags
    • Advisories
    • Disclosure
    • Conferences
    • SRA.io
  • Posts
  • Tags
  • Advisories
  • Disclosure
  • Conferences
  • SRA.io

DEFCON 34 Recap

2026-09-08Security Risk Advisors
#defcon  #defcon34  #conference 
SRA’s highlights from DEFCON 34
Read more →

Advisory: Ellucian Advance

2026-07-28Security Risk Advisors
#advisory  #CVE-2026-6881 
SRA has identified a SQL injection vulnerability in Ellucian Advance Web and Legacy Advance.
Read more →

From Portal to Pivot: Four CVEs in Switchvox SMB Web Application

2026-07-21Cam Lischke
#CVE-2026-9585  #CVE-2026-9586  #CVE-2026-9587  #CVE-2026-9588  #cve 
SRA identified and disclosed several vulnerabilities in Sangoma Switchvox SMB. This post explains the technical details for each of the four CVEs.
Read more →

Advisory: VSee Clinic

2026-07-20Security Risk Advisors
#advisory  #CVE-2026-13381  #CVE-2026-13380 
SRA has identified multiple vulnerabilities in VSee Clinic that can lead to unauthorized access to and deletion of files as well as exposure of SFTP credentials.
Read more →

Advisory: Sangoma Switchvox SMB

2026-07-17Security Risk Advisors
#advisory  #CVE-2026-9585  #CVE-2026-9586  #CVE-2026-9587  #CVE-2026-9588 
SRA has identified multiple vulnerabilities in Sangoma Switchvox SMB that can lead to stored and reflected cross-site scripting (XSS), SQL injection (SQLi), remote code execution (RCE), and local file inclusion (LFI).
Read more →
Older posts →
Privacy ::  ::  ::  ::  :: Theme by Mirus