CVE-2026-88761
Deferred Deferred - Pending Action

Predictable WiFi Password in Botslab G980H Dash Camera Firmware

Vulnerability report for CVE-2026-88761, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-24

Last updated on: 2026-09-24

Assigner: ICS-CERT

Description

The Botslab G980H dash camera firmware generates the default WiFi password using predictable device information, portions of which are advertised by the product. An unauthenticated attacker within WiFi range could potentially determine the remaining password characters through limited guessing and gain unauthorized access to the device network.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-24
Last Modified
2026-09-24
Generated
2026-09-25
AI Q&A
2026-09-25
EPSS Evaluated
N/A
NVD

Affected Vendors & Products

Currently, no data is known.

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-1391 The product uses weak credentials (such as a default key or hard-coded password) that can be calculated, derived, reused, or guessed by an attacker.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

The Botslab G980H dash camera firmware creates the default WiFi password using predictable device information that is advertised by the product. An attacker within WiFi range could guess the remaining password characters with limited attempts and gain unauthorized access to the device network.

Detection Guidance

Detecting this vulnerability requires checking if the WiFi password of the Botslab G980H dash camera can be predicted. Monitor network traffic for unauthorized access attempts or unusual connections to the device's WiFi network. Use tools like Wireshark to capture and analyze packets from the device.

Impact Analysis

An attacker could access the dash camera's network, potentially intercepting video feeds, modifying settings, or using the device as a gateway to other connected systems if the WiFi network is shared.

Mitigation Strategies

Change the default WiFi password on the Botslab G980H dash camera to a strong, unique password. Ensure the device firmware is updated to the latest version if a patch is available. Restrict physical access to the device to prevent unauthorized tampering.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-88761. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart