FortiGuard Intrusion Prevention System

The FortiGuard Intrusion Prevention Service provides Fortinet customers with the latest defenses against stealthy network-level threats. It uses a customizable database of more than 4000 known threats to enable FortiGate and FortiWiFi appliances to stop attacks that evade conventional firewall defenses. It also provides behavior-based heuristics, enabling the system to recognize threats for which no signature has yet been developed. The combination of known and unknown threat prevention enables FortiGate systems to stop the most damaging attacks at the network border regardless of whether the network is a wired, wireless, partner extranet, or branch office network connection. Additionally, the FortiGuard IPS provides more than 1000 application identity signatures for complete application control. IPS signature updates are provided quickly via the global FortiGuard distribution network.

The table below lists the latest vulnerabilities that are currently prevalent.

VulnerabilitySeverityDate Protected
MS.DCERPC.NETAPI32.Buffer.OverflowcriticalOct 24. 2008
NaviCOPA.URI.Buffer.OverflowhighApr 21. 2009
MS.IE7...ted.DOM.Object.Access.Memory.CorruptioncriticalFeb 16. 2009
BlazeDVD.PLF.Playlist.Buffer.OverflowhighOct 09. 2008
Joomla.Com.User.Component.Password.ResethighSep 23. 2008
RoundCube.Webmail.Pregreplace.Code.ExecutionhighMar 05. 2009
CRC32.SSH.NOOPcriticalMay 14. 2009
AOL.IWinAmpActiveX...s.ConvertFile.Method.AccesscriticalMay 22. 2009
Apache.Mod.Proxy.Ftp.Wildcard.Characters.XSSmediumSep 23. 2008
Apple.QuickTime.STSD.JPEG.Atom.Heap.CorruptioncriticalMay 14. 2009

IPS Encyclopedia
Vulnerability Encyclopedia contains detailed descriptions of various vulnerabilities.

  Read more
Severity Levels
Learn how the FortiGuard Global Threat Research Team provides severity rating on the coverage of vulnerabilities.

  Read more