Researchers have discovered a vulnerability that hackers can exploit remotely to tamper with the timestamp of videos recorded by Dahua security cameras.

See also: Weee! data breach: Customer details exposed
The flaw, identified as CVE-2022-30564, was discovered last year by India-based CCTV and IoT cybersecurity company Redinent Innovations. Advisories describing the vulnerability were published on Wednesday by both Dahua and Redinent.
Redinent classified this vulnerability as a “high” severity issue, however Dahua rated it with a CVSS score of 5.3 – meaning it is actually “moderate severity.”.
According to the Chinese video surveillance equipment manufacturer, the flaw affects many types of widely used cameras and video recorders, including IPC, SD, NVR and XVR products.
See also: Tor and I2P networks face ongoing DDoS attacks
An attacker can exploit the vulnerability to modify a device's system time by sending it a specially crafted packet.
According to Redinent, hackers can target thousands of exposed cameras connected to the internet. In addition, they can exploit vulnerabilities from local networks as well – although this requires knowledge of the parameters of an API. Such malicious activity not only puts users, but also puts their privacy and security at risk.
"An attacker can modify the timestamp of the video stream, resulting in unreliable date and time data appearing in the recorded video, without needing to know the camera 's username and password ," Redinent explained in its advisory.

The Dahua device vulnerabilities may be targeted by DDoS botnets, but in the case of CVE-2022-30564, they could likely be used in highly targeted attacks , the goal of which is evidence tampering rather than cybercrime operations.
See also: Dota 2: Malicious game mods infected gamers with malware
Last fall, the vendor was notified of this issue. In response, Dahua issued updates for all affected devices.
Information source: securityweek.com
