---
id: CVE-2026-88761
title: >-
  The Botslab G980H dash camera firmware generates the default WiFi password
  using predictable device information, portions of which are advertised by the
  product
summary: >-
  The Botslab G980H dash camera firmware generates the default WiFi password
  using predictable device information, portions of which are advertised by the
  product. An unauthenticated attacker within WiFi range could potentially
  determine t…
severity: medium
cvss: 5.3
cvssVector: 'CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N'
cwe:
  - CWE-1391
vendor: Botslab
product: G980H
affected:
  - G980H 30010_QHG980HN5294SysFW+
  - G980H 58_QHG980HMCN5291SysFW+
published: '2026-09-24'
updated: '2026-09-25'
sourceUpdated: '2026-09-25T17:17:18.277'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-88761'
references:
  - url: >-
      https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-267-01.json
    label: ics-cert@hq.dhs.gov
  - url: 'https://www.botslab.com/pages/about-botslab'
    label: ics-cert@hq.dhs.gov
  - url: 'https://www.cisa.gov/news-events/ics-advisories/icsa-26-267-01'
    label: ics-cert@hq.dhs.gov
tags:
  - nvd
  - cve.org
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: partial
  timestamp: '2026-09-25T16:28:53.763452Z'
ingestedAt: '2026-09-24T20:51:40.260Z'
epss: 0.00169
epssPercentile: 0.05487
---

## Overview

The Botslab G980H dash camera firmware generates the default WiFi password using predictable device information, portions of which are advertised by the product. An unauthenticated attacker within WiFi range could potentially determine the remaining password characters through limited guessing and gain unauthorized access to the device network.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
