CVE-2023-40718: Fortinet FortiOS Ips Engine

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

A interpretation conflict in Fortinet IPS Engine versions 7.321, 7.166 and 6.158 allows attacker to evade IPS features via crafted TCP packets.

Affected products

  • Fortinet FortiOS Ips Engine: up to and including 7.312; up to and including 7.165; up to and including 6.158

Published 2023-10-10. Last modified 2026-06-17.