AllCyberNews

CVE-2026-77967

Botslab G980H Dashcams Authentication Bypass by Capture-replay

CVSS 8.6 high · Botslab G980H · published 2026-09-24

The Botslab G980H dash camera firmware accepts a reusable authentication value without adequately verifying its freshness or association with the requesting client. An unauthenticated attacker with adjacent network access who captures a valid authentication value could replay it from another client to establish an authenticated session and access privileged device functionality.

Coverage 1 source

  1. 2026-09-24 CISA Cybersecurity Advisories high Botslab G980H Dashcams

    Multiple vulnerabilities in Botslab G980H Dashcams could allow attackers to bypass authentication and gain unauthorized access.

Mentioned with

CVE-2026-75558 CVE-2026-82566 CVE-2026-82716 CVE-2026-84399 CVE-2026-84403 CVE-2026-85496 CVE-2026-88761

Also covered