CVE-2023-40718: IPS Engine evasion using custom TCP flags
A interpretation conflict in Fortinet IPS Engine versions 7.321, 7.166 and 6.158 allows attacker to evade IPS features via crafted TCP packets.
Other sources
An interpretation conflict vulnerability [CWE-436] in FortiOS IPS Engine may allow an unauthenticated remote attacker to evade NGFW policies or IPS Engine protection via crafted TCP packets.
— FortiGuard
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2023-40718?
CVE-2023-40718 is a vulnerability in Fortinet IPS Engine versions 7.321, 7.166, and 6.158 that allows attackers to evade IPS features through crafted TCP packets.
How can an attacker exploit CVE-2023-40718?
An attacker can exploit CVE-2023-40718 by sending specially crafted TCP packets to evade IPS features.
Which versions of Fortinet IPS Engine are affected by CVE-2023-40718?
Fortinet IPS Engine versions 7.321, 7.166, and 6.158 are affected by CVE-2023-40718.
What is the severity of CVE-2023-40718?
CVE-2023-40718 has a severity rating of 7.5 (High).
Where can I find more information about CVE-2023-40718?
More information about CVE-2023-40718 can be found at https://fortiguard.com/psirt/FG-IR-23-090.