Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
Botslab has not responded to requests to work with CISA to mitigate this vulnerability. Users of affected versions of G980H Dashcams are invited to reach out to Botslab for more information: https://www.botslab.com/pages/about-botslab
Thu, 24 Sep 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Botslab G980H dash camera firmware accepts a reusable authentication value without adequately verifying its freshness or association with the requesting client. An unauthenticated attacker with adjacent network access who captures a valid authentication value could replay it from another client to establish an authenticated session and access privileged device functionality. | |
| Title | Botslab G980H Dashcams Authentication Bypass by Capture-replay | |
| Weaknesses | CWE-294 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-09-24T19:51:27.318Z
Reserved: 2026-09-10T15:31:03.075Z
Link: CVE-2026-77967
No data.
Status : Deferred
Published: 2026-09-24T20:17:30.227
Modified: 2026-09-24T21:25:27.050
Link: CVE-2026-77967
No data.
OpenCVE Enrichment
No data.