Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Workaround
Botslab has not responded to requests to work with CISA to mitigate this vulnerability. Users of affected versions of G980H Dashcams are invited to reach out to Botslab for more information: https://www.botslab.com/pages/about-botslab
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 24 Sep 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Botslab G980H dash camera firmware does not require authenticated pairing or client binding before permitting access to Bluetooth Low Energy communications and GATT characteristics. An unauthenticated attacker within Bluetooth range could intercept or directly retrieve sensitive device information, including device identifiers, firmware information, and protected WiFi credentials. | |
| Title | Botslab G980H Dashcams Missing Authentication for Critical Function | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2026-09-24T20:07:30.444Z
Reserved: 2026-09-10T15:25:29.823Z
Link: CVE-2026-84403
No data.
Status : Deferred
Published: 2026-09-24T21:18:55.220
Modified: 2026-09-24T21:25:27.050
Link: CVE-2026-84403
No data.
OpenCVE Enrichment
No data.