Sensitive Information Exposure in Botslab G980H Dash Camera Firmware
CVE-2026-82585

7.1HIGH

Key Information:

Vendor

Botslab

Status
Vendor
CVE Published:
24 September 2026

What is CVE-2026-82585?

The Botslab G980H dash camera firmware exposes sensitive data by transmitting information over unsecured HTTP and RTSP connections. This vulnerability allows attackers to intercept communications when the device is connected to a WiFi network, potentially granting access to stored video recordings, live video feed, precise location details, images, diagnostic logs, and other confidential information exchanged between the camera and its mobile application.

Affected Version(s)

G980H 30010_QHG980HN5294SysFW+

G980H 58_QHG980HMCN5291SysFW+

References

CVSS V4

Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Julian of Software Secured reported this vulnerability to CISA.
.