CVE-2026-82566
The Botslab G980H dash camera firmware contains a session management vulnerability in which authentication state can remain valid after the
CVSS
8.8
Alto
EPSS
0.3%
p18
KEV
—
Exploit Today
5
0-100
Publicado: 24 sept 2026 · Última mod.: 24 sept 2026 · CWE-613
Sin historial EPSS suficiente todavía.
The Botslab G980H dash camera firmware contains a session management vulnerability in which authentication state can remain valid after the associated client connection has been terminated or replaced. Under certain connection conditions, a newly established connection can displace an existing client while previously established session state remains active until a separate expiration mechanism invalidates it. An unauthenticated attacker with adjacent network access could potentially take advantage of this residual authentication state to access functionality associated with another client's session.