Path Traversal Vulnerability in Botslab G980H Dash Camera Firmware
CVE-2026-82708
7.1HIGH
What is CVE-2026-82708?
The Botslab G980H dash camera firmware is impacted by a path traversal vulnerability within its HTTP server. This can allow an attacker who has connected to the device's WiFi network to exploit the issue by sending a specially crafted request. As a result, an unauthorized user could gain access to sensitive files stored on the device's removable storage, including video recordings, images, diagnostic logs, or even firmware files that should not be publicly accessible. Proper measures should be taken to secure the device and mitigate potential risks associated with this vulnerability.
Affected Version(s)
G980H 30010_QHG980HN5294SysFW+
G980H 58_QHG980HMCN5291SysFW+
References
CVSS V4
Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Julian of Software Secured reported this vulnerability to CISA.
