Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Workaround
Botslab has not responded to requests to work with CISA to mitigate this vulnerability. Users of affected versions of G980H Dashcams are invited to reach out to Botslab for more information: https://www.botslab.com/pages/about-botslab
Tracking
Sign in to view the affected projects.
No advisories yet.
Sat, 26 Sep 2026 07:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 25 Sep 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Botslab
Botslab g980h |
|
| Vendors & Products |
Botslab
Botslab g980h |
Thu, 24 Sep 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Botslab G980H dash camera firmware contains a hard-coded root account password that cannot be changed by the user. An attacker who obtains the firmware or has physical access to the device could recover the credential and use it to obtain root access through the UART interface. | |
| Title | Botslab G980H Dashcams Use of Hard-coded Credentials | |
| Weaknesses | CWE-798 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-09-25T16:20:10.901Z
Reserved: 2026-09-10T15:25:29.841Z
Link: CVE-2026-79959
Updated: 2026-09-25T16:20:05.415Z
Status : Deferred
Published: 2026-09-24T21:18:44.353
Modified: 2026-09-25T17:17:14.720
Link: CVE-2026-79959
No data.
OpenCVE Enrichment
Updated: 2026-09-25T14:14:57Z
-
CWE-798
Use of Hard-coded Credentials