CVE-2026-84403
Botslab G980H Dashcams Missing Authentication for Critical Function
The Botslab G980H dash camera firmware does not require authenticated pairing or client binding before permitting access to Bluetooth Low Energy communications and GATT characteristics. An unauthenticated attacker within Bluetooth range could intercept or directly retrieve sensitive device information, including device identifiers, firmware information, and protected WiFi credentials.
Coverage 1 source
-
2026-09-24
CISA Cybersecurity Advisories
high
Botslab G980H Dashcams
Multiple vulnerabilities in Botslab G980H Dashcams could allow attackers to bypass authentication and gain unauthorized access.
Mentioned with
CVE-2026-75558 CVE-2026-77967 CVE-2026-82566 CVE-2026-82716 CVE-2026-84399 CVE-2026-85496 CVE-2026-88761
Also covered
- CVE-2026-86950 Apple iOS and iPadOS
- CVE-2023-6548 Cloud Software Group NetScaler ADC
- CVE-2023-25608 Fortinet FortiAP-W2
- CVE-2026-88772 Memory overflow vulnerability leading to Remote Code Execution or Denial of Service
- CVE-2026-88771 A remote code execution vulnerability exists due to improper input validation, which can allow an unauthenticated attacker to execute arbitrary commands