Sensitive Information Exposure in Botslab G980H Dash Camera Firmware
CVE-2026-82585
7.1HIGH
What is CVE-2026-82585?
The Botslab G980H dash camera firmware exposes sensitive data by transmitting information over unsecured HTTP and RTSP connections. This vulnerability allows attackers to intercept communications when the device is connected to a WiFi network, potentially granting access to stored video recordings, live video feed, precise location details, images, diagnostic logs, and other confidential information exchanged between the camera and its mobile application.
Affected Version(s)
G980H 30010_QHG980HN5294SysFW+
G980H 58_QHG980HMCN5291SysFW+
References
CVSS V4
Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Julian of Software Secured reported this vulnerability to CISA.
