CVE-2026-77967
Botslab G980H Dashcams Authentication Bypass by Capture-replay
The Botslab G980H dash camera firmware accepts a reusable authentication value without adequately verifying its freshness or association with the requesting client. An unauthenticated attacker with adjacent network access who captures a valid authentication value could replay it from another client to establish an authenticated session and access privileged device functionality.
Coverage 1 source
-
2026-09-24
CISA Cybersecurity Advisories
high
Botslab G980H Dashcams
Multiple vulnerabilities in Botslab G980H Dashcams could allow attackers to bypass authentication and gain unauthorized access.
Mentioned with
CVE-2026-75558 CVE-2026-82566 CVE-2026-82716 CVE-2026-84399 CVE-2026-84403 CVE-2026-85496 CVE-2026-88761
Also covered
- CVE-2026-86950 Apple iOS and iPadOS
- CVE-2023-6548 Cloud Software Group NetScaler ADC
- CVE-2023-25608 Fortinet FortiAP-W2
- CVE-2026-88772 Memory overflow vulnerability leading to Remote Code Execution or Denial of Service
- CVE-2026-88771 A remote code execution vulnerability exists due to improper input validation, which can allow an unauthenticated attacker to execute arbitrary commands