PT-2026-98296 · Unknown · Botslab G980H

·

CVE-2026-79959

·

Published

2026-09-24

·

Updated

2026-09-25

CVSS v3.1

6.8

Medium

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Botslab G980H (affected versions not specified)
Description The firmware contains a hard-coded root account password that is immutable by the user. An attacker with physical access to the device or access to the firmware can recover these credentials to gain root access via the UART (Universal Asynchronous Receiver-Transmitter, a hardware communication protocol) interface.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Using Hardcoded Credentials

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-79959

Affected Products

Botslab G980H