CVE-2026-77967: Botslab g980h

High severity, CVSS 8.1. EPSS: 0.2% chance of exploitation in the next 30 days.

The Botslab G980H dash camera firmware accepts a reusable authentication value without adequately verifying its freshness or association with the requesting client. An unauthenticated attacker with adjacent network access who captures a valid authentication value could replay it from another client to establish an authenticated session and access privileged device functionality.

Affected products

  • Botslab g980h: from 30010_QHG980HN5294SysFW; from 58_QHG980HMCN5291SysFW

Published 2026-09-24. Last modified 2026-09-25.