CVE-2026-77967
Deferred Deferred - Pending Action

Authentication Replay in Botslab G980H Firmware

Vulnerability report for CVE-2026-77967, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-24

Last updated on: 2026-09-24

Assigner: ICS-CERT

Description

The Botslab G980H dash camera firmware accepts a reusable authentication value without adequately verifying its freshness or association with the requesting client. An unauthenticated attacker with adjacent network access who captures a valid authentication value could replay it from another client to establish an authenticated session and access privileged device functionality.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-24
Last Modified
2026-09-24
Generated
2026-09-25
AI Q&A
2026-09-25
EPSS Evaluated
N/A
NVD

Affected Vendors & Products

Currently, no data is known.

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-294 A capture-replay flaw exists when the design of the product makes it possible for a malicious user to sniff network traffic and bypass authentication by replaying it to the server in question to the same effect as the original message (or with minor changes).

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

The Botslab G980H dash camera firmware uses a reusable authentication value that lacks freshness verification or client association checks. An attacker with nearby network access can capture this value and replay it from another device to gain authenticated access to privileged functions without proper authorization.

Detection Guidance

Detecting this vulnerability requires monitoring network traffic for replayed authentication values. Use packet capture tools like tcpdump or Wireshark to inspect authentication exchanges. Look for repeated or reused session tokens or credentials in network traffic. Check device logs for unusual authentication attempts from multiple clients using the same credentials.

Impact Analysis

An attacker could gain unauthorized access to the dash camera's features, potentially viewing, modifying, or deleting recorded data. This may compromise privacy, allow tampering with evidence, or enable further network-based attacks if the camera is connected to other systems.

Compliance Impact

This vulnerability could lead to unauthorized access or data breaches, violating privacy requirements under GDPR and HIPAA. Organizations may face legal penalties, loss of compliance certifications, and reputational damage due to compromised sensitive data.

Mitigation Strategies

Immediately update the Botslab G980H dash camera firmware to the latest version if an update is available. Disable any remote or adjacent network access to the device if not required. Implement network segmentation to isolate the device from critical systems. Monitor network traffic for signs of replay attacks and revoke any potentially compromised credentials.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-77967. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart