...
This product includes Third-party Software that is affected by the vulnerabilities identified by the following Common Vulnerability and Exposures (CVE) IDs: CVE-2007-2768 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2768 CVE-2010-4478 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4478 CVE-2010-4755 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4755 CVE-2010-5107 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-5107 CVE-2011-4327 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-4327 CVE-2011-5000 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-5000 CVE-2012-0814 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-0814 CVE-2014-1692 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-1692 CVE-2014-2532 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-2532 CVE-2014-2653 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-2653 CVE-2015-5352 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5352 CVE-2015-5600 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5600 CVE-2015-6563 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-6563 CVE-2015-6564 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-6564 CVE-2016-0777 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0777 CVE-2016-0778 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0778 CVE-2016-10009 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-10009 CVE-2016-10010 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-10010 CVE-2016-10011 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-10011 CVE-2016-10012 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-10012 CVE-2016-10708 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-10708 CVE-2016-3115 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-3115 CVE-2016-6210 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6210 CVE-2017-15906 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-15906 CVE-2018-15473 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-15473 CVE-2018-20685 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20685 CVE-2019-6109 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-6109 CVE-2019-6110 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-6110 CVE-2019-6111 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-6111 CVE-2021-28041 - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-28041 After analysis, Cisco has decided against performing additional actions on this product due to one of the following reasons: - The product is no longer maintained, having reached End of Software Maintenance. - The product is still being maintained, but a business decision was made not to upgrade the vulnerable product. - The product uses the affected third-party component in such a way as to not be affected by these vulnerabilities.
Device with default configuration.
Not available or not applicable.
Additional details about the vulnerabilities listed above can be found at https://www.cve.org/. PSIRT Evaluation: The Cisco PSIRT has assigned this bug the following CVSS version 3.0 score. The Base CVSS score as of the time of evaluation is: 8.1 https://tools.cisco.com/security/center/cvssCalculator.x?version=3.0&vector=CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H CVE ID CVE-2007-2768, CVE-2010-4478, CVE-2010-4755, CVE-2010-5107, CVE-2011-4327, CVE-2011-5000, CVE-2012-0814, CVE-2014-1692, CVE-2014-2532, CVE-2014-2653, CVE-2015-5352, CVE-2015-5600, CVE-2015-6563, CVE-2015-6564, CVE-2016-0777, CVE-2016-0778, CVE-2016-10009, CVE-2016-10010, CVE-2016-10011, CVE-2016-10012, CVE-2016-10708, CVE-2016-3115, CVE-2016-6210, CVE-2017-15906, CVE-2018-15473, CVE-2018-20685, CVE-2019-6109, CVE-2019-6110, CVE-2019-6111, CVE-2021-28041 have been assigned to document this issue. Additional information on Cisco's security vulnerability policy can be found at the following URL: http://www.cisco.com/en/US/products/products_security_vulnerability_policy.html