<?xml version="1.0" encoding="UTF-8"?>
<oval_definitions xsi:schemaLocation="http://oval.mitre.org/XMLSchema/oval-definitions-5 oval-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-common-5 oval-common-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5#ios ios-definitions-schema.xsd" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:oval="http://oval.mitre.org/XMLSchema/oval-common-5" xmlns:oval-def="http://oval.mitre.org/XMLSchema/oval-definitions-5">
  <generator>
    <oval:product_name>The OVAL Repository</oval:product_name>
    <oval:schema_version>5.6</oval:schema_version>
    <oval:timestamp>2010-03-11T04:31:50.463-05:00</oval:timestamp>
  </generator>
  <definitions>
    <definition id="oval:org.mitre.oval:def:5778" version="2" class="vulnerability">
      <metadata>
        <title>RSA BSAFE Cyrpt-C and Cert-C Libraries ASN.1 Object Parsing DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-3894" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3894"/>
        <description>The RSA Crypto-C before 6.3.1 and Cert-C before 2.8 libraries, as used by RSA BSAFE, multiple Cisco products, and other products, allows remote attackers to cause a denial of service via malformed ASN.1 objects.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:28.393-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:57.201-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:43.994-04:00">ACCEPTED</status_change>
            <modified comment="correction to regular expression" date="2009-11-23T14:36:00.936-05:00">
              <contributor organization="Gideon Technologies, Inc.">Dragos Prisaca</contributor>
            </modified>
            <status_change date="2009-11-23T14:36:53.093-05:00">INTERIM</status_change>
            <modified comment="Correction to regex for clarity and readability" date="2009-12-03T17:17:00.974-05:00">
              <contributor organization="Maitreya Security">Thomas R. Jones</contributor>
            </modified>
            <status_change date="2009-12-21T04:00:39.821-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2006-3894">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8044"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8527"/>
        <criteria operator="OR">
          <criteria operator="AND">
            <criterion comment="config contains: ^\s*ip http secure-server" test_ref="oval:org.mitre.oval:tst:8767"/>
            <criterion negate="true" comment="config contains: ^\s*no ip http secure-server" test_ref="oval:org.mitre.oval:tst:8357"/>
          </criteria>
          <criterion comment="config contains: parameter-map type tms" test_ref="oval:org.mitre.oval:tst:8983"/>
          <criterion comment="config contains: crypto signaling default trustpoint" test_ref="oval:org.mitre.oval:tst:8848"/>
          <criterion comment="config contains: method tls" test_ref="oval:org.mitre.oval:tst:8967"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5836" version="2" class="vulnerability">
      <metadata>
        <title>Cisco IOS AAA Command Authorization Bypass Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0485" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0485"/>
        <description>The TCL shell in Cisco IOS 12.2(14)S before 12.2(14)S16, 12.2(18)S before 12.2(18)S11, and certain other releases before 25 January 2006 does not perform Authentication, Authorization, and Accounting (AAA) command authorization checks, which may allow local users to execute IOS EXEC commands that were prohibited via the AAA configuration, aka Bug ID CSCeh73049.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:21.325-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:02.236-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:51.590-04:00">ACCEPTED</status_change>
            <modified comment="correction to regular expression" date="2009-11-23T14:31:00.179-05:00">
              <contributor organization="Gideon Technologies, Inc.">Dragos Prisaca</contributor>
            </modified>
            <status_change date="2009-11-23T14:36:28.549-05:00">INTERIM</status_change>
            <modified comment="correcting escape characters in regular expression for ste:4000" date="2009-11-24T11:18:00.673-05:00">
              <contributor organization="Gideon Technologies, Inc.">Dragos Prisaca</contributor>
            </modified>
            <status_change date="2009-12-14T04:00:06.094-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2006-2006-0485">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8666"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8876"/>
        <criterion comment="config contains: aaa authorization commands .*tacacs+" test_ref="oval:org.mitre.oval:tst:9042"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5317" version="2" class="vulnerability">
      <metadata>
        <title>Cisco IOS Firewall Authentication Proxy Buffer Overflow Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2841" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2841"/>
        <description>Buffer overflow in Firewall Authentication Proxy for FTP and/or Telnet Sessions for Cisco IOS 12.2ZH and 12.2ZL, 12.3 and 12.3T, and 12.4 and 12.4T allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted user authentication credentials.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:45.445-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:25.019-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:21.945-04:00">ACCEPTED</status_change>
            <modified comment="correction to regular expression" date="2009-11-23T14:36:00.227-05:00">
              <contributor organization="Gideon Technologies, Inc.">Dragos Prisaca</contributor>
            </modified>
            <status_change date="2009-11-23T14:37:14.380-05:00">INTERIM</status_change>
            <status_change date="2009-12-14T04:00:05.128-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2005-2841">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8103"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8624"/>
        <criterion comment="config contains: ip auth-proxy" test_ref="oval:org.mitre.oval:tst:8880"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4905" version="2" class="vulnerability">
      <metadata>
        <title>Cisco IOS AAA Command Authorization Bypass via TCL Shell Reuse Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0486" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0486"/>
        <description>Certain Cisco IOS releases in 12.2S based trains with maintenance release number 25 and later, 12.3T based trains, and 12.4 based trains reuse a Tcl Shell process across login sessions of different local users on the same terminal if the first user does not use tclquit before exiting, which may cause subsequent local users to execute unintended commands or bypass AAA command authorization checks, aka Bug ID CSCef77770.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:51.634-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:14.557-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:12.949-04:00">ACCEPTED</status_change>
            <modified comment="correction to regular expression" date="2009-11-23T14:31:00.179-05:00">
              <contributor organization="Gideon Technologies, Inc.">Dragos Prisaca</contributor>
            </modified>
            <status_change date="2009-11-23T14:36:28.354-05:00">INTERIM</status_change>
            <modified comment="correcting escape characters in regular expression for ste:4000" date="2009-11-24T11:18:00.673-05:00">
              <contributor organization="Gideon Technologies, Inc.">Dragos Prisaca</contributor>
            </modified>
            <status_change date="2009-12-14T04:00:04.606-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2006-0486">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8666"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8876"/>
        <criterion comment="config contains: aaa authorization commands .*tacacs+" test_ref="oval:org.mitre.oval:tst:9042"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5785" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Vendors Net-SNMPv3 Hash Message Authentication Code Design Error Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-0960" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-0960"/>
        <description>SNMPv3 HMAC verification in (1) Net-SNMP 5.2.x before 5.2.4.1, 5.3.x before 5.3.2.1, and 5.4.x before 5.4.1.1; (2) UCD-SNMP; (3) eCos; (4) Juniper Session and Resource Control (SRC) C-series 1.0.0 through 2.0.0; (5) NetApp (aka Network Appliance) Data ONTAP 7.3RC1 and 7.3RC2; (6) SNMP Research before 16.2; (7) multiple Cisco IOS, CatOS, ACE, and Nexus products; and (8) Ingate Firewall 3.1.0 and later and SIParator 3.1.0 and later relies on the client to specify the HMAC length, which makes it easier for remote attackers to bypass SNMP authentication via a length value of 1, which only checks the first byte.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:27.397-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:58.218-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:45.081-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-0960">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8885"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8684"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5867" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS HTTP Server Router Administration Script Injection Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3921" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3921"/>
        <description>Cross-site scripting (XSS) vulnerability in Cisco IOS Web Server for IOS 12.0(2a) allows remote attackers to inject arbitrary web script or HTML by (1) packets containing HTML that an administrator views via an HTTP interface to the contents of memory buffers, as demonstrated by the URI /level/15/exec/-/buffers/assigned/dump; or (2) sending the router Cisco Discovery Protocol (CDP) packets with HTML payload that an administrator views via the CDP status pages.  NOTE: these vectors were originally reported as being associated with the dump and packet options in /level/15/exec/-/show/buffers.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:15.847-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:05.477-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:56.335-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2005-3921">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8847"/>
        <criteria operator="OR" comment="running congfig meets CVE-2005-3921">
          <criteria operator="AND">
            <criterion comment="config contains: ^\s*ip http server" test_ref="oval:org.mitre.oval:tst:8123"/>
            <criterion negate="true" comment="config contains: ^\s*no ip http server" test_ref="oval:org.mitre.oval:tst:8920"/>
          </criteria>
          <criteria operator="AND">
            <criterion comment="config contains: ^\s*ip http secure-server" test_ref="oval:org.mitre.oval:tst:8767"/>
            <criterion negate="true" comment="config contains: ^\s*no ip http secure-server" test_ref="oval:org.mitre.oval:tst:8357"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5226" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Systems Malformed IPSec IKE DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3669" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3669"/>
        <description>Multiple unspecified vulnerabilities in the Internet Key Exchange version 1 (IKEv1) implementation in multiple Cisco products allow remote attackers to cause a denial of service (device reset) via certain malformed IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1.  NOTE: due to the lack of details in the Cisco advisory, it is unclear which of CVE-2005-3666, CVE-2005-3667, and/or CVE-2005-3668 this issue applies to.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:47.608-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:21.397-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:19.252-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2005-3669">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8641"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4914" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS System Timers Heap Overflow Code Execution Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-3481" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3481"/>
        <description>Cisco IOS 12.0 to 12.4 might allow remote attackers to execute arbitrary code via a heap-based buffer overflow in system timers. NOTE: this issue does not correspond to a specific vulnerability, rather a general weakness that only increases the feasibility of exploitation of any vulnerabilities that might exist.  Such design-level weaknesses normally are not included in CVE, so perhaps this issue should be REJECTed.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:51.368-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:14.994-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:13.734-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2005-3481">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8732"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8855"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5386" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Vendor ICMP Path MTU Discovery Connection Degradation DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1060" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1060"/>
        <description>Multiple TCP/IP and ICMP implementations, when using Path MTU (PMTU) discovery (PMTUD), allow remote attackers to cause a denial of service (network throughput reduction for TCP connections) via forged ICMP ("Fragmentation Needed and Don't Fragment was Set") packets with a low next-hop MTU value, aka the "Path MTU discovery attack."  NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability.  While CVE normally SPLITs based on vulnerability, the attack-based identifiers exist due to the variety and number of affected implementations and solutions that address the attacks instead of the underlying vulnerabilities.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:45.046-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:26.186-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:22.253-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2004-1060">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8503"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8451"/>
        <criteria operator="OR">
          <criterion comment="config contains: ip tcp path-mtu-discovery" test_ref="oval:org.mitre.oval:tst:8608"/>
          <criterion comment="config contains: crypto map" test_ref="oval:org.mitre.oval:tst:9102"/>
          <criterion comment="config contains: tunnel protection" test_ref="oval:org.mitre.oval:tst:8933"/>
          <criterion comment="config contains: ip pmtu" test_ref="oval:org.mitre.oval:tst:9066"/>
          <criterion comment="config contains: tunnel path-mtu-discovery" test_ref="oval:org.mitre.oval:tst:8954"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5567" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Remote Router Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-1999-0159" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-1999-0159"/>
        <description>Attackers can crash a Cisco IOS router or device, provided they can get to an interactive prompt (such as a login).  This applies to some IOS 9.x, 10.x, and 11.x releases.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:40.141-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:39.550-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:27.543-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-1999-0159">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8891"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8453"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4849" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Systems IOS Skinny Call Control Protocol Handler Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-0186" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0186"/>
        <description>Cisco IOS 12.1YD, 12.2T, 12.3 and 12.3T, when configured for the IOS Telephony Service (ITS), CallManager Express (CME) or Survivable Remote Site Telephony (SRST), allows remote attackers to cause a denial of service (device reboot) via a malformed packet to the SCCP port.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:52.419-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:13.793-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:07.258-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2005-0186">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8432"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8727"/>
        <criteria operator="OR">
          <criterion comment="config contains: telephony-service" test_ref="oval:org.mitre.oval:tst:8822"/>
          <criterion comment="config contains: call-manager-fallback" test_ref="oval:org.mitre.oval:tst:8870"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4884" version="1" class="vulnerability">
      <metadata>
        <title>Cisco H.323 Protocol Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0054" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0054"/>
        <description>Multiple vulnerabilities in the H.323 protocol implementation for Cisco IOS 11.3T through 12.2T allow remote attackers to cause a denial of service and possibly execute arbitrary code, as demonstrated by the NISCC/OUSPG PROTOS test suite for the H.225 protocol.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:51.950-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:14.094-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:12.094-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2004-0054">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8675"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8720"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4922" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Vendor TCP/IP stack Weak Initial Sequence Number Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0328" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0328"/>
        <description>TCP implementations that use random increments for initial sequence numbers (ISN) can allow remote attackers to perform session hijacking or disruption by injecting a flood of packets with a range of ISN values, one of which may match the expected ISN.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:50.991-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:15.718-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:14.026-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0328">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8829"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8632"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4937" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Gigabit Switch Routers (GSR) Authentication Circumvention Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2000-0700" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2000-0700"/>
        <description>Cisco Gigabit Switch Routers (GSR) with Fast Ethernet / Gigabit Ethernet cards, from IOS versions 11.2(15)GS1A up to 11.2(19)GS0.2 and some versions of 12.0, do not properly handle line card failures, which allows remote attackers to bypass ACLs or force the interface to stop forwarding packets.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:50.531-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:16.024-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:14.319-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2000-0700">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8828"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8227"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:4948" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Border Gateway Protocol (BGP) OPEN and UPDATE Messages Design Error Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0589" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0589"/>
        <description>Cisco IOS 11.1(x) through 11.3(x) and 12.0(x) through 12.2(x), when configured for BGP routing, allows remote attackers to cause a denial of service (device reload) via malformed BGP (1) OPEN or (2) UPDATE messages.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-04-30T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:50.172-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:16.734-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:14.857-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2004-0589">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8462"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8383"/>
        <criterion comment="config contains: router bgp" test_ref="oval:org.mitre.oval:tst:8953"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5075" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Session Initiation Protocol (SIP) Packet Code Execution Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-4295" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4295"/>
        <description>Unspecified vulnerability in Cisco IOS 12.0 through 12.4 allows remote attackers to execute arbitrary code via a malformed SIP packet, aka CSCsi80749.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:49.607-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:17.872-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:15.706-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-4295">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8832"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8472"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5080" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS IPv4 Memory Leak DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-0479" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0479"/>
        <description>Memory leak in the TCP listener in Cisco IOS 9.x, 10.x, 11.x, and 12.x allows remote attackers to cause a denial of service by sending crafted TCP traffic to an IPv4 address on the IOS device.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-01T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:49.430-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:18.562-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:16.210-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-0479">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8922"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8659"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5138" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Device SIP Support DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-0648" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0648"/>
        <description>Cisco IOS after 12.3(14)T, 12.3(8)YC1, 12.3(8)YG, and 12.4, with voice support and without Session Initiated Protocol (SIP) configured, allows remote attackers to cause a denial of service (crash) by sending a crafted packet to port 5060/UDP.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:48.861-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:19.139-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:17.038-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-0648">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8543"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8602"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5188" version="1" class="vulnerability">
      <metadata>
        <title>Cisco 7600, Catalyst 6000 and 6500 Network Analysis Module SNMP Message Spoofing Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-1257" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1257"/>
        <description>The Network Analysis Module (NAM) in Cisco Catalyst Series 6000, 6500, and 7600 allows remote attackers to execute arbitrary commands via certain SNMP packets that are spoofed from the NAM's own IP address.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:48.406-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:20.342-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:17.957-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-1257">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8859"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8446"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5210" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS 12.0 Allowance of Malicious Traffic Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0866" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0866"/>
        <description>Cisco 12000 with IOS 12.0 and lines card based on Engine 2 does not properly handle an outbound ACL when an input ACL is not configured on all the interfaces of a multi port line card, which could allow remote attackers to bypass the intended access controls.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:47.878-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:20.967-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:18.958-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0866">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8814"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8514"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5287" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Virtual Private Dial-up Network (VPDN) PPTP Session Termination Memory Leak Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-1151" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1151"/>
        <description>Memory leak in the virtual private dial-up network (VPDN) component in Cisco IOS before 12.3 allows remote attackers to cause a denial of service (memory consumption) via a series of PPTP sessions, related to "dead memory" that remains allocated after process termination, aka bug ID CSCsj58566.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:47.260-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:22.952-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:19.955-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-1151">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8768"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8607"/>
        <criterion comment="config contains: vpdn enable" test_ref="oval:org.mitre.oval:tst:8784"/>
        <criterion comment="config contains: vpdn-group" test_ref="oval:org.mitre.oval:tst:8900"/>
        <criteria operator="OR">
          <criterion comment="config contains: protocol any" test_ref="oval:org.mitre.oval:tst:8950"/>
          <criterion comment="config contains: protocol pptp" test_ref="oval:org.mitre.oval:tst:9078"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5288" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Extensible Authentication Protocol (EAP) Design Error Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-5651" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5651"/>
        <description>Unspecified vulnerability in the Extensible Authentication Protocol (EAP) implementation in Cisco IOS 12.3 and 12.4 on Cisco Access Points and 1310 Wireless Bridges (Wireless EAP devices), IOS 12.1 and 12.2 on Cisco switches (Wired EAP devices), and CatOS 6.x through 8.x on Cisco switches allows remote attackers to cause a denial of service (device reload) via a crafted EAP Response Identity packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:47.036-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:23.552-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:20.684-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-5651">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8533"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8877"/>
        <criteria operator="OR">
          <criterion comment="config contains: authentication open eap" test_ref="oval:org.mitre.oval:tst:9094"/>
          <criterion comment="config contains: authentication network-eap" test_ref="oval:org.mitre.oval:tst:8665"/>
          <criterion comment="config contains: wlccp authentication-server client" test_ref="oval:org.mitre.oval:tst:8620"/>
          <criterion comment="config contains: wlccp authentication-server infrastructure" test_ref="oval:org.mitre.oval:tst:8994"/>
          <criterion comment="config contains: dot1x pae authenticator" test_ref="oval:org.mitre.oval:tst:8941"/>
          <criterion comment="config contains: dot1x pae both" test_ref="oval:org.mitre.oval:tst:9068"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5292" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Vendor OpenSSL 0.9.6, 0.9.7 ASN.1 Vulnerabilities</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0543" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0543"/>
        <description>Integer overflow in OpenSSL 0.9.6 and 0.9.7 allows remote attackers to cause a denial of service (crash) via an SSL client certificate with certain ASN.1 tag values.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:46.284-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:24.326-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:21.069-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2003-0543">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8874"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8878"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5297" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS access-list "tacacs-ds" or "tacacs" Keyword Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-1999-0161" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-1999-0161"/>
        <description>In Cisco IOS 10.3, with the tacacs-ds or tacacs keyword, an extended IP access control list could bypass filtering.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:45.982-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:24.588-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:21.365-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-1999-0161">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8758"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5299" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Multiple Products IKE Packet DoS</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-3906" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3906"/>
        <description>Internet Key Exchange (IKE) version 1 protocol, as implemented on Cisco IOS, VPN 3000 Concentrators, and PIX firewalls, allows remote attackers to cause a denial of service (resource exhaustion) via a flood of IKE Phase-1 packets that exceed the session expiration rate. NOTE: it has been argued that this is due to a design weakness of the IKE version 1 protocol, in which case other vendors and implementations would also be affected.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:45.761-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:24.789-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:21.662-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2006-3906">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8763"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8579"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5397" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Vendor SSH Buffer Overflow Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0144" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0144"/>
        <description>CORE SDI SSH1 CRC-32 compensation attack detector allows remote attackers to execute arbitrary commands on an SSH server or client via an integer overflow.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:44.313-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:27.126-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:22.689-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0144">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8889"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8737"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5402" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Vendor NTP Buffer Overflow</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0414" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0414"/>
        <description>Buffer overflow in ntpd ntp daemon 4.0.99k and earlier (aka xntpd and xntp3) allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long readvar argument.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:44.149-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:27.807-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:22.933-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0414">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8576"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8546"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5444" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS File Transfer DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-2587" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2587"/>
        <description>The IOS FTP Server in Cisco IOS 11.3 through 12.4 allows remote authenticated users to cause a denial of service (IOS reload) via unspecified vectors involving transferring files (aka bug ID CSCse29244).</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:43.824-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:28.820-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:23.236-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-2587">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8323"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8479"/>
        <criterion comment="config contains: ftp-server enable" test_ref="oval:org.mitre.oval:tst:8637"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5445" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Systems Internetwork Operating System IPv6 Packet DoS, Code Execution Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2451" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2451"/>
        <description>Cisco IOS 12.0 through 12.4 and IOS XR before 3.2, with IPv6 enabled, allows remote attackers on a local network segment to cause a denial of service (device reload) and possibly execute arbitrary code via a crafted IPv6 packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:43.410-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:30.413-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:23.616-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2005-2451">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8728"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8869"/>
        <criterion comment="config contains: ip auth-proxy" test_ref="oval:org.mitre.oval:tst:8880"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5449" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS TFTP Server Long File Name Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0813" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0813"/>
        <description>Heap-based buffer overflow in the TFTP server capability in Cisco IOS 11.1, 11.2, and 11.3 allows remote attackers to cause a denial of service (reset) or modify configuration via a long filename.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:43.013-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:31.070-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:23.929-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2002-0813">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:7897"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5454" version="1" class="vulnerability">
      <metadata>
        <title>Cisco "EIGRP" Protocol "Goodbye Message" Packet Replay Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-4436" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-4436"/>
        <description>Extended Interior Gateway Routing Protocol (EIGRP) 1.2, as implemented in Cisco IOS after 12.3(2), 12.3(3)B, and 12.3(2)T and other products, allows remote attackers to cause a denial of service by sending a "spoofed neighbor announcement" with (1) mismatched k values or (2) "goodbye message" Type-Length-Value (TLV).</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:42.790-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:31.991-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:24.411-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2005-4436">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8536"/>
        <criterion comment="config contains: router eigrp" test_ref="oval:org.mitre.oval:tst:8871"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5455" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Systems IOS SSH2 DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1020" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1020"/>
        <description>Secure Shell (SSH) 2 in Cisco IOS 12.0 through 12.3 allows remote attackers to cause a denial of service (device reload) (1) via a username that contains a domain name when using a TACACS+ server to authenticate, (2) when a new SSH session is in the login phase and a currently logged in user issues a send command, or (3) when IOS is logging messages and an SSH session is terminated while the server is sending data.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:42.639-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:32.903-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:24.767-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2005-1020">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8734"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8670"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5461" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS 12.0 Turbo ACL Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0865" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0865"/>
        <description>Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not support the "fragment" keyword in an outgoing ACL, which could allow fragmented packets in violation of the intended access.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:42.503-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:33.152-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:25.065-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0865">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8258"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8806"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5465" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Vendor Full and Half Width Unicode Detection Bypass Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-2688" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2688"/>
        <description>The Cisco Intrusion Prevention System (IPS) and IOS with Firewall/IPS Feature Set do not properly handle certain full-width and half-width Unicode character encodings, which might allow remote attackers to evade detection of HTTP traffic.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:42.198-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:33.643-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:25.468-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Cisco ISO meets CVE-2007-2688">
        <criterion comment="config contains: ip inspect name \S+ http" test_ref="oval:org.mitre.oval:tst:8663"/>
        <criterion comment="config contains: ip ips \S+ in" test_ref="oval:org.mitre.oval:tst:8601"/>
        <criterion comment="config contains: ip ips \S+ out" test_ref="oval:org.mitre.oval:tst:8509"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5486" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Secure Shell Denial of Service Vulnerabilities</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-1159" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1159"/>
        <description>Multiple unspecified vulnerabilities in the SSH server in Cisco IOS 12.4 allow remote attackers to cause a denial of service (device restart) via unknown vectors, aka Bug ID (1) CSCsk42419, (2) CSCsk60020, and (3) CSCsh51293.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:41.987-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:34.243-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:25.774-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-1159">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8512"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8550"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5528" version="1" class="vulnerability">
      <metadata>
        <title>OpenSSL 0.9.6k ASN.1 DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0851" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0851"/>
        <description>OpenSSL 0.9.6k allows remote attackers to cause a denial of service (crash via large recursion) via malformed ASN.1 sequences.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:41.688-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:36.052-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:26.119-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2003-0851">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8884"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:9003"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5541" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Fragment Outgoing Fragment Access Control Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0863" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0863"/>
        <description>Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not handle the "fragment" keyword in a compiled ACL (Turbo ACL) for packets that are sent to the router, which allows remote attackers to cause a denial of service via a flood of fragments.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:41.400-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:36.391-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:26.453-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0863">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8635"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8787"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5542" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS 12.2 Secure Copy Security Bypass Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-4263" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4263"/>
        <description>Unspecified vulnerability in the server side of the Secure Copy (SCP) implementation in Cisco 12.2-based IOS allows remote authenticated users to read, write or overwrite any file on the device's filesystem via unknown vectors.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:41.029-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:36.883-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:26.720-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-4263">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8345"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8836"/>
        <criterion comment="config contains: ip scp server enable" test_ref="oval:org.mitre.oval:tst:8618"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5544" version="1" class="vulnerability">
      <metadata>
        <title>Cisco VTP Subset-Advert DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-4826" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-4826"/>
        <description>Unspecified vulnerability in the VLAN Trunking Protocol (VTP) feature in Cisco IOS 12.1(22)EA3 on Catalyst 2950T switches allows remote attackers to cause a denial of service (device reboot) via a crafted Subset-Advert message packet, a different issue than CVE-2006-4774, CVE-2006-4775, and CVE-2006-4776.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:40.691-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:37.221-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:27.046-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2005-4826">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8688"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5565" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS OSPF Buffer Overflow Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0100" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0100"/>
        <description>Buffer overflow in Cisco IOS 11.2.x to 12.0.x allows remote attackers to cause a denial of service and possibly execute commands via a large number of OSPF neighbor announcements.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:40.458-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:39.322-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:27.286-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2003-0100">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8676"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8519"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5570" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS H.323 Packet DoS Vulnerability, Media Gateway Control Protocol Packet DoS Vulnerability and Real-time Transport Protocol Packet DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-4291" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4291"/>
        <description>Cisco IOS 12.0 through 12.4 allows remote attackers to cause a denial of service via (1) a malformed MGCP packet, which causes a device hang, aka CSCsf08998; a malformed H.323 packet, which causes a device crash, as identified by (2) CSCsi60004 with Proxy Unregistration and (3) CSCsg70474; and a malformed Real-time Transport Protocol (RTP) packet, which causes a device crash, as identified by (4) CSCse68138, related to VOIP RTP Lib, and (5) CSCse05642, related to I/O memory corruption.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:39.789-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:39.779-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:27.831-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-4291">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8832"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8472"/>
        <criteria operator="OR">
          <criterion comment="config contains: proxy h323" test_ref="oval:org.mitre.oval:tst:8899"/>
          <criterion comment="config contains: ip inspect name \S+ h323" test_ref="oval:org.mitre.oval:tst:8786"/>
          <criterion comment="config contains: service mgcpapp" test_ref="oval:org.mitre.oval:tst:8910"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5574" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Input Access List Packet Leakage Flaw</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-1999-0445" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-1999-0445"/>
        <description>In Cisco routers under some versions of IOS 12.0 running NAT, some packets may not be filtered by input access list filters.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:39.440-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:40.924-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:28.181-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-1999-0445">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8290"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8748"/>
        <criterion comment="config contains: ip access-group \S+ in" test_ref="oval:org.mitre.oval:tst:8685"/>
        <criteria operator="OR">
          <criterion comment="config contains: ip nat inside" test_ref="oval:org.mitre.oval:tst:9093"/>
          <criterion comment="config contains: ip nat outside" test_ref="oval:org.mitre.oval:tst:8816"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5575" version="1" class="vulnerability">
      <metadata>
        <title>Cisco PIX CBAC Fragmentation Attack</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-1999-0157" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-1999-0157"/>
        <description>Cisco PIX firewall and CBAC IP fragmentation attack results in a denial of service.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:38.886-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:41.174-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:29.157-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-1999-0157">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8704"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5598" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Virtual Private Dial-up Network (VPDN) Denial of Service (DoS) Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-1150" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1150"/>
        <description>The virtual private dial-up network (VPDN) component in Cisco IOS before 12.3 allows remote attackers to cause a denial of service (resource exhaustion) via a series of PPTP sessions, related to the persistence of interface descriptor block (IDB) data structures after process termination, aka bug ID CSCdv59309.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:38.610-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:41.752-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:29.437-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-1150">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8768"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8607"/>
        <criterion comment="config contains: vpdn enable" test_ref="oval:org.mitre.oval:tst:8784"/>
        <criterion comment="config contains: vpdn-group" test_ref="oval:org.mitre.oval:tst:8900"/>
        <criteria operator="OR">
          <criterion comment="config contains: protocol any" test_ref="oval:org.mitre.oval:tst:8950"/>
          <criterion comment="config contains: protocol pptp" test_ref="oval:org.mitre.oval:tst:9078"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5603" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Systems IOS 11.x/12.x DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0567" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0567"/>
        <description>Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service (traffic block) by sending a particular sequence of IPv4 packets to an interface on the device, causing the input queue on that interface to be marked as full.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:37.988-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:42.955-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:29.991-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2003-0567">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8795"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8460"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5608" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0305" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0305"/>
        <description>The Service Assurance Agent (SAA) in Cisco IOS 12.0 through 12.2, aka Response Time Reporter (RTR), allows remote attackers to cause a denial of service (crash) via malformed RTR packets to port 1967.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:37.665-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:43.201-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:30.972-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2003-0305">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8719"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8833"/>
        <criterion comment="config contains: ^\s*rtr responder" test_ref="oval:org.mitre.oval:tst:8464"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5632" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Systems IOS DHCP Input Queue DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-1111" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1111"/>
        <description>Cisco IOS 2.2(18)EW, 12.2(18)EWA, 12.2(14)SZ, 12.2(18)S, 12.2(18)SE, 12.2(18)SV, 12.2(18)SW, and other versions without the "no service dhcp" command, keep undeliverable DHCP packets in the queue instead of dropping them, which allows remote attackers to cause a denial of service (dropped traffic) via multiple undeliverable DHCP packets that exceed the input queue size.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:37.234-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:44.401-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:31.343-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2004-1111">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:7843"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8838"/>
        <criterion negate="true" comment="config contains: no service dhcp" test_ref="oval:org.mitre.oval:tst:8974"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5644" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS BGP Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0650" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0650"/>
        <description>Cisco devices IOS 12.0 and earlier allow a remote attacker to cause a crash, or bad route updates, via malformed BGP updates with unrecognized transitive attribute.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:36.820-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:44.847-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:31.982-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0650">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8793"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8826"/>
        <criterion comment="config contains: router bgp" test_ref="oval:org.mitre.oval:tst:8749"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5648" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Multicast Virtual Private Network Information Leakage Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-1156" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1156"/>
        <description>Unspecified vulnerability in the Multicast Virtual Private Network (MVPN) implementation in Cisco IOS 12.0, 12.2, 12.3, and 12.4 allows remote attackers to create "extra multicast states on the core routers" via a crafted Multicast Distribution Tree (MDT) Data Join message.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:36.411-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:45.071-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:32.289-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-1156">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8529"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8722"/>
        <criterion comment="config contains: mdt default" test_ref="oval:org.mitre.oval:tst:8882"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5652" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Systems IOS Malformed BGP Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-0196" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0196"/>
        <description>Cisco IOS 12.0 through 12.3YL, with BGP enabled and running the bgp log-neighbor-changes command, allows remote attackers to cause a denial of service (device reload) via a malformed BGP packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:36.107-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:45.659-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:32.597-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2005-0196">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8628"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8771"/>
        <criteria operator="OR">
          <criterion comment="config contains: bgp log-neighbor-changes" test_ref="oval:org.mitre.oval:tst:8841"/>
          <criterion comment="config contains: snmp-server enable traps bgp" test_ref="oval:org.mitre.oval:tst:8694"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5659" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS 12.0 ACL Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0862" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0862"/>
        <description>Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not block non-initial packet fragments, which allows remote attackers to bypass the ACL.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:35.734-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:46.165-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:32.882-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0862">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8761"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8638"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5661" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS access-list Keyword Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-1999-0162" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-1999-0162"/>
        <description>The "established" keyword in some Cisco IOS software allowed an attacker to bypass filtering.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:35.528-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:46.376-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:33.404-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-1999-0162">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8564"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5662" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Routers MPLS Reset Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-0197" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0197"/>
        <description>Cisco IOS 12.1T, 12.2, 12.2T, 12.3 and 12.3T, with Multi Protocol Label Switching (MPLS) installed but disabled, allows remote attackers to cause a denial of service (device reload) via a crafted packet sent to the disabled interface.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:35.345-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:46.591-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:33.660-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2005-0197">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:7886"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8506"/>
        <criterion negate="true" comment="config contains: mpls traffic-eng tunnels" test_ref="oval:org.mitre.oval:tst:8747"/>
        <criteria operator="OR">
          <criterion comment="config contains: mpls ip" test_ref="oval:org.mitre.oval:tst:8652"/>
          <criterion comment="config contains: tag-switching ip" test_ref="oval:org.mitre.oval:tst:8682"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5663" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS HTTP Authorization Circumvention Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0537" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0537"/>
        <description>HTTP server for Cisco IOS 11.3 to 12.2 allows attackers to bypass authentication and execute arbitrary commands, when local authorization is being used, by specifying a high access level in the URL.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:34.919-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:46.837-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:34.178-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0537">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8333"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8811"/>
        <criterion comment="config contains: ^\s*ip http server" test_ref="oval:org.mitre.oval:tst:8123"/>
        <criterion negate="true" comment="config contains: ^\s*no ip http server" test_ref="oval:org.mitre.oval:tst:8920"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5665" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Systems Non-DOCSIS Platform Default DOCSIS SNMP Support Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-4950" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4950"/>
        <description>Cisco IOS 12.2 through 12.4 before 20060920, as used by Cisco IAD2430, IAD2431, and IAD2432 Integrated Access Devices, the VG224 Analog Phone Gateway, and the MWR 1900 and 1941 Mobile Wireless Edge Routers, is incorrectly identified as supporting DOCSIS, which allows remote attackers to gain read-write access via a hard-coded cable-docsis community string and read or modify arbitrary SNMP variables.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:34.683-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:47.082-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:34.479-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2006-4950">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8482"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8783"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5666" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS IP Option Remote Code Execution Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-0480" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0480"/>
        <description>Cisco IOS 9.x, 10.x, 11.x, and 12.x and IOS XR 2.0.x, 3.0.x, and 3.2.x allows remote attackers to cause a denial of service or execute arbitrary code via a crafted IP option in the IP header in a (1) ICMP, (2) PIMv2, (3) PGM, or (4) URD packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:34.462-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:47.297-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:34.793-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-0480">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8093"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8863"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5675" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Next Hop Resolution Protocol Buffer Overflow Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-4286" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4286"/>
        <description>Buffer overflow in the Next Hop Resolution Protocol (NHRP) functionality in Cisco IOS 12.0 through 12.4 allows remote attackers to cause a denial of service (restart) and execute arbitrary code via a crafted NHRP packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:34.174-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:47.788-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:35.305-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-4286">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8062"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8862"/>
        <criterion comment="config contains: ip nhrp network-id" test_ref="oval:org.mitre.oval:tst:8955"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5680" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Aironet Access Point ARP Memory Exhaustion DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-0354" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0354"/>
        <description>Cisco IOS before 12.3-7-JA2 on Aironet Wireless Access Points (WAP) allows remote authenticated users to cause a denial of service (termination of packet passing or termination of client connections) by sending the management interface a large number of spoofed ARP packets, which creates a large ARP table that exhausts memory, aka Bug ID CSCsc16644.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:33.827-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:48.370-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:35.719-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2006-0354">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8837"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8121"/>
        <criterion negate="true" comment="config contains: l2-filter block-arp" test_ref="oval:org.mitre.oval:tst:8252"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5681" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0895" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0895"/>
        <description>Multiple Cisco networking products allow remote attackers to cause a denial of service on the local network via a series of ARP packets sent to the router's interface that contains a different MAC address for the router, which eventually causes the router to overwrite the MAC address in its ARP table.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:33.492-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:48.652-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:36.016-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0895">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8616"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8772"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5687" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Systems IOS SSH Transmission Control Blocks DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1021" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1021"/>
        <description>Memory leak in Secure Shell (SSH) in Cisco IOS 12.0 through 12.3, when authenticating against a TACACS+ server, allows remote attackers to cause a denial of service (memory consumption) via an incorrect username or password.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:33.226-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:49.791-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:36.790-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2005-1021">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8734"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8670"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5696" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Systems IPSec VPN Services Module Malformed IKE Packet Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0710" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0710"/>
        <description>IP Security VPN Services Module (VPNSM) in Cisco Catalyst 6500 Series Switch and the Cisco 7600 Series Internet Routers running IOS before 12.2(17b)SXA, before 12.2(17d)SXB, or before 12.2(14)SY03 could allow remote attackers to cause a denial of service (device crash and reload) via a malformed Internet Key Exchange (IKE) packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:32.974-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:50.330-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:37.350-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2004-0710">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8569"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8647"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5711" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Systems Spoofed TCP Reset and SYN Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0230" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0230"/>
        <description>TCP, when using a large Window Size, makes it easier for remote attackers to guess sequence numbers and cause a denial of service (connection loss) to persistent TCP connections by repeatedly injecting a TCP RST packet, especially in protocols that use long-lived connections, such as BGP.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:32.716-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:51.474-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:38.111-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2004-0230">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8766"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8552"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5713" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS GRE Source Routing Integer Overflow ACL Bypass Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-4650" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4650"/>
        <description>Cisco IOS 12.0, 12.1, and 12.2, when GRE IP tunneling is used and the RFC2784 compliance fixes are missing, does not verify the offset field of a GRE packet during decapsulation, which leads to an integer overflow that references data from incorrect memory locations, which allows remote attackers to inject crafted packets into the routing queue, possibly bypassing intended router ACLs.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:32.446-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:51.734-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:38.826-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2006-4650">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8798"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5714" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS 12.4 Malformed DLSw Message DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-0199" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0199"/>
        <description>The Data-link Switching (DLSw) feature in Cisco IOS 11.0 through 12.4 allows remote attackers to cause a denial of service (device reload) via "an invalid value in a DLSw message... during the capabilities exchange."</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:32.201-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:51.981-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:39.103-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-0199">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8853"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8809"/>
        <criterion comment="config contains: dlsw local-peer" test_ref="oval:org.mitre.oval:tst:8973"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5718" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS ILMI SNMP Community String Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0380" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0380"/>
        <description>Crosscom/Olicom XLT-F running XL 80 IM Version 5.5 Build Level 2 allows a remote attacker SNMP read and write access via a default, undocumented community string 'ILMI'.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:31.847-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:52.240-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:39.767-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0380">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8851"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8481"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5721" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Vendors SSH2 "lists with empty elements or multiple separators" Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1358" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1358"/>
        <description>Multiple SSH2 servers and clients do not properly handle lists with empty elements or strings, which may allow remote attackers to cause a denial of service or possibly execute arbitrary code, as demonstrated by the SSHredder SSH protocol test suite.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:31.562-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:52.466-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:40.070-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2002-1358">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8661"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8424"/>
        <criterion comment="config contains: crypto key generate rsa" test_ref="oval:org.mitre.oval:tst:8948"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5729" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Vendor SSH 1.5 Session Key Recovery Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0361" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0361"/>
        <description>Implementations of SSH version 1.5, including (1) OpenSSH up to version 2.3.0, (2) AppGate, and (3) ssh-1 up to version 1.2.31, in certain configurations, allow a remote attacker to decrypt and/or alter traffic via a "Bleichenbacher attack" on PKCS#1 version 1.5.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:31.427-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:53.180-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:40.338-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0361">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8889"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8737"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5738" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Systems IOS Unauthorized IPSec SA Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1058" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1058"/>
        <description>Cisco IOS 12.2T, 12.3 and 12.3T, when processing an ISAKMP profile that specifies XAUTH authentication after Phase 1 negotiation, may not process certain attributes in the ISAKMP profile that specifies XAUTH, which allows remote attackers to bypass XAUTH and move to Phase 2 negotiations.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:31.084-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:54.461-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:40.957-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2005-1058">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8755"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8721"/>
        <criteria operator="OR">
          <criterion comment="config contains: crypto map \S+ client authentication list" test_ref="oval:org.mitre.oval:tst:8976"/>
          <criteria operator="AND">
            <criterion comment="config contains: crypto isakmp profile" test_ref="oval:org.mitre.oval:tst:9110"/>
            <criterion comment="config contains: crypto isakmp profile" test_ref="oval:org.mitre.oval:tst:9110"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5741" version="1" class="vulnerability">
      <metadata>
        <title>Cisco "EIGRP" Protocol "HELLO" Packet Replay Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-4437" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-4437"/>
        <description>MD5 Neighbor Authentication in Extended Interior Gateway Routing Protocol (EIGRP) 1.2, as implemented in Cisco IOS 11.3 and later, does not include the Message Authentication Code (MAC) in the checksum, which allows remote attackers to sniff message hashes and (1) replay EIGRP HELLO messages or (2) cause a denial of service by sending a large number of spoofed EIGRP neighbor announcements, which results in an ARP storm on the local network.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:30.907-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:54.898-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:41.335-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2005-4437">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8536"/>
        <criterion comment="config contains: router eigrp" test_ref="oval:org.mitre.oval:tst:8871"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5745" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS SSL ChamgeCipherSpec DoS Vulnerability, ClientHello DoS Vulnerability and Finished Message DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-2813" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2813"/>
        <description>Cisco IOS 12.4 and earlier, when using the crypto packages and SSL support is enabled, allows remote attackers to cause a denial of service via a malformed (1) ClientHello, (2) ChangeCipherSpec, or (3) Finished message during an SSL session.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:30.561-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:55.493-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:41.815-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-2813">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8866"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8625"/>
        <criteria operator="OR">
          <criterion comment="config contains: cns config \S+ \S+ encrypt" test_ref="oval:org.mitre.oval:tst:8989"/>
          <criteria operator="AND">
            <criterion comment="config contains: ^\s*ip http secure-server" test_ref="oval:org.mitre.oval:tst:8767"/>
            <criterion negate="true" comment="config contains: ^\s*no ip http secure-server" test_ref="oval:org.mitre.oval:tst:8357"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5754" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS 12.0 Security Policy Circumvention Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0867" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0867"/>
        <description>Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not properly filter does not properly filter packet fragments even when the "fragment" keyword is used in an ACL, which allows remote attackers to bypass the intended access controls.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:30.151-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:55.753-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:42.197-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0867">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8800"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8750"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5756" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS RADIUS Authentication Bypass Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-2105" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2105"/>
        <description>Cisco IOS 12.2T through 12.4 allows remote attackers to bypass Authentication, Authorization, and Accounting (AAA) RADIUS authentication, if the fallback method is set to none, via a long username.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:29.793-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:55.981-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:42.538-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2005-2105">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8860"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8538"/>
        <criteria operator="OR">
          <criterion comment="config contains: aaa authentication login \S+ group radius none" test_ref="oval:org.mitre.oval:tst:8909"/>
          <criterion comment="config contains: aaa authentication ppp \S+ group radius none" test_ref="oval:org.mitre.oval:tst:8410"/>
          <criterion comment="config contains: aaa authentication login \S+ group radius local none" test_ref="oval:org.mitre.oval:tst:9081"/>
          <criterion comment="config contains: aaa authentication ppp \S+ group radius local none" test_ref="oval:org.mitre.oval:tst:9040"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5769" version="1" class="vulnerability">
      <metadata>
        <title>Cisco 12000 Series Internet Router Denial Of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0861" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0861"/>
        <description>Cisco 12000 with IOS 12.0 and line cards based on Engine 2 and earlier allows remote attackers to cause a denial of service (CPU consumption) by flooding the router with traffic that generates a large number of ICMP Unreachable replies.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:29.148-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:56.282-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:43.122-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0861">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8513"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8756"/>
        <criterion negate="true" comment="config contains: no ip unreachables" test_ref="oval:org.mitre.oval:tst:8671"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5770" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Vendor OpenSSL 0.9.6x, 0.9.7x Null-Pointer DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0079" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0079"/>
        <description>The do_change_cipher_spec function in OpenSSL 0.9.6c to 0.9.6k, and 0.9.7a to 0.9.7c, allows remote attackers to cause a denial of service (crash) via a crafted SSL/TLS handshake that triggers a null dereference.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:28.753-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:56.544-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:43.402-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2004-0079">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8567"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8785"/>
        <criterion comment="config contains: ^\s*ip http secure-server" test_ref="oval:org.mitre.oval:tst:8767"/>
        <criterion negate="true" comment="config contains: ^\s*no ip http secure-server" test_ref="oval:org.mitre.oval:tst:8357"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5781" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Session Initiation Protocol (SIP) Packet DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-4292" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4292"/>
        <description>Multiple memory leaks in Cisco IOS 12.0 through 12.4 allow remote attackers to cause a denial of service (device crash) via a malformed SIP packet, aka (1) CSCsf11855, (2) CSCeb21064, (3) CSCse40276, (4) CSCse68355, (5) CSCsf30058, (6) CSCsb24007, and (7) CSCsc60249.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:27.837-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:57.796-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:44.330-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-4292">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8832"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8472"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5784" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Express Forwarding Information Disclosure vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-0339" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0339"/>
        <description>Cisco IOS 11.1CC through 12.2 with Cisco Express Forwarding (CEF) enabled includes portions of previous packets in the padding of a MAC level packet when the MAC packet's length is less than the IP level packet length.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:27.691-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:58.001-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:44.674-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2002-0339">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8695"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8467"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5797" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Vendors SSH2 "null characters in strings" Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1360" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1360"/>
        <description>Multiple SSH2 servers and clients do not properly handle strings with null characters in them when the string length is specified by a length field, which could allow remote attackers to cause a denial of service or possibly execute arbitrary code due to interactions with the use of null-terminated strings as implemented using languages such as C, as demonstrated by the SSHredder SSH protocol test suite.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:27.069-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:58.475-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:45.801-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2002-1360">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8661"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8424"/>
        <criterion comment="config contains: crypto key generate rsa" test_ref="oval:org.mitre.oval:tst:8948"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5801" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Media Gateway Control Protocol Packet DoS Vulnerability and Facsimile Reception Overly Large Packet DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-4293" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4293"/>
        <description>Cisco IOS 12.0 through 12.4 allows remote attackers to cause a denial of service (device crash) via (1) "abnormal" MGCP messages, aka CSCsd81407; and (2) a large facsimile packet, aka CSCej20505.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:26.900-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:58.758-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:46.060-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-4293">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8832"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8472"/>
        <criterion comment="config contains: service mgcpapp" test_ref="oval:org.mitre.oval:tst:8910"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5803" version="1" class="vulnerability">
      <metadata>
        <title>Cisco SSH Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1024" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1024"/>
        <description>Cisco IOS 12.0 through 12.2, when supporting SSH, allows remote attackers to cause a denial of service (CPU consumption) via a large packet that was designed to exploit the SSH CRC32 attack detection overflow (CVE-2001-0144).</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:26.672-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:59.248-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:46.850-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2002-1024">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8886"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8714"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5813" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Systems IOS IPv6 Heap Corruption Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-0195" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0195"/>
        <description>Cisco IOS 12.0S through 12.3YH allows remote attackers to cause a denial of service (device restart) via a crafted IPv6 packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:26.334-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:59.463-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:47.231-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2005-0195">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8545"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8111"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5818" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0750" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0750"/>
        <description>Cisco IOS 12.1(2)T, 12.1(3)T allow remote attackers to cause a denial of service (reload) via a connection to TCP ports 3100-3999, 5100-5999, 7100-7999 and 10100-10999.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:26.030-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:59.677-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:47.492-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0750">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8823"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8723"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5821" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Data-link Switching (DLSw) Unspecified DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-1152" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1152"/>
        <description>The data-link switching (DLSw) component in Cisco IOS 12.0 through 12.4 allows remote attackers to cause a denial of service (device restart or memory consumption) via crafted (1) UDP port 2067 or (2) IP protocol 91 packets.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:25.726-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:59.896-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:47.749-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-1152">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8729"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8735"/>
        <criterion comment="config contains: dlsw local-peer" test_ref="oval:org.mitre.oval:tst:8926"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5823" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS CDP Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-1071" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-1071"/>
        <description>Cisco IOS 12.2 and earlier running Cisco Discovery Protocol (CDP) allows remote attackers to cause a denial of service (memory consumption) via a flood of CDP neighbor announcements.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:25.284-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:00.121-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:48.109-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-1071">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8782"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8852"/>
        <criteria operator="OR" comment="running congfig meets CVE-2005-3921">
          <criteria operator="AND">
            <criterion comment="config contains: ^\s*cdp run" test_ref="oval:org.mitre.oval:tst:8706"/>
            <criterion negate="true" comment="config contains: ^\s*no cdp run" test_ref="oval:org.mitre.oval:tst:8904"/>
          </criteria>
          <criteria operator="AND">
            <criterion comment="config contains: cdp enable" test_ref="oval:org.mitre.oval:tst:8789"/>
            <criterion negate="true" comment="config contains: no cdp enable" test_ref="oval:org.mitre.oval:tst:8908"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5824" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS User Enumeration via Error Messages</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0512" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0512"/>
        <description>Cisco IOS 12.2 and earlier generates a "% Login invalid" message instead of prompting for a password when an invalid username is provided, which allows remote attackers to identify valid usernames on the system and conduct brute force password guessing, as reported for the Aironet Bridge.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:24.639-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:00.385-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:48.595-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2003-0512">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8849"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8699"/>
        <criterion negate="true" comment="config contains: aaa new-model" test_ref="oval:org.mitre.oval:tst:9089"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5826" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Multiple Router Products Web Setup Configuration Error Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2006-3595" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3595"/>
        <description>The default configuration of IOS HTTP server in Cisco Router Web Setup (CRWS) before 3.3.0 build 31 does not require credentials, which allows remote attackers to access the server with arbitrary privilege levels, aka bug CSCsa78190.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:24.232-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:00.647-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:48.880-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2006-3595">
        <criterion comment="config contains: ^\s*ip http" test_ref="oval:org.mitre.oval:tst:8515"/>
        <criterion negate="true" comment="config contains: enable secret" test_ref="oval:org.mitre.oval:tst:8603"/>
        <criterion negate="true" comment="config contains: ^\s*ip http authentication" test_ref="oval:org.mitre.oval:tst:8554"/>
        <criterion negate="true" comment="config contains: enable password" test_ref="oval:org.mitre.oval:tst:8120"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5827" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS PPP CHAP Authentication Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-1999-0160" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-1999-0160"/>
        <description>Some classic Cisco IOS devices have a vulnerability in the PPP CHAP authentication to establish unauthorized PPP connections.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:23.697-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:00.879-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:49.256-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-1999-0160">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8639"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8894"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5828" version="1" class="vulnerability">
      <metadata>
        <title>Cisco 6000/6500/7600 Crafted Layer 2 Frame Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0244" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0244"/>
        <description>Cisco 6000, 6500, and 7600 series systems with Multilayer Switch Feature Card 2 (MSFC2) and a FlexWAN or OSM module allow local users to cause a denial of service (hang or reset) by sending a layer 2 frame packet that encapsulates a layer 3 packet, but has inconsistent length values with that packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:23.380-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:01.089-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:49.655-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2004-0244">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8738"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:9014"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5831" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Vendor Session Initiation Protocol Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-1108" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-1108"/>
        <description>The Session Initiation Protocol (SIP) implementation in Alcatel OmniPCX Enterprise 5.0 Lx allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:23.038-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:01.305-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:49.911-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2003-1108">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8895"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8850"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5832" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Regular Expression ATOMIC.TCP DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-0918" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0918"/>
        <description>The ATOMIC.TCP signature engine in the Intrusion Prevention System (IPS) feature for Cisco IOS 12.4XA, 12.3YA, 12.3T, and other trains allows remote attackers to cause a denial of service (IPS crash and traffic loss) via unspecified manipulations that are not properly handled by the regular expression feature, as demonstrated using the 3123.0 (Netbus Pro Traffic) signature.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:22.698-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:01.533-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:50.379-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-0918">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8199"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8865"/>
        <criteria operator="OR">
          <criterion comment="config contains: ip ips \S+ in" test_ref="oval:org.mitre.oval:tst:8601"/>
          <criterion comment="config contains: ip ips \S+ out" test_ref="oval:org.mitre.oval:tst:8509"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5834" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Aironet Wireless Devices DoS</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2003-0511" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0511"/>
        <description>The web server for Cisco Aironet AP1x00 Series Wireless devices running certain versions of IOS 12.2 allow remote attackers to cause a denial of service (reload) via a malformed URL.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-04-30T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:22.316-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:01.778-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:50.686-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="OR" comment="Cisco ISO meets CVE-2003-0511">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8760"/>
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8623"/>
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:9032"/>
        <criterion comment="config contains: ^\s*ip http secure-server" test_ref="oval:org.mitre.oval:tst:9043"/>
        <criterion negate="true" comment="config contains: ^\s*no ip http secure-server" test_ref="oval:org.mitre.oval:tst:8992"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5835" version="1" class="vulnerability">
      <metadata>
        <title>Multiple OS TCP/IP DoS Vulnerabilities</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-1999-0016" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-1999-0016"/>
        <description>Land IP denial of service.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-01T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:21.683-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:02.032-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:50.960-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-1999-0016">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8821"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8970"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5839" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Node Route Processor 2 12.1 DC Authorization Circumvention Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0757" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0757"/>
        <description>Cisco 6400 Access Concentrator Node Route Processor 2 (NRP2) 12.1DC card does not properly disable access when a password has not been set for vtys, which allows remote attackers to obtain access via telnet.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:20.802-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:02.476-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:52.026-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0757">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8582"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8873"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5840" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS 12.3 IPv6 Packet Processing Information Leakage Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-4285" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4285"/>
        <description>Unspecified vulnerability in Cisco IOS and Cisco IOS XR 12.x up to 12.3, including some versions before 12.3(15) and 12.3(14)T, allows remote attackers to obtain sensitive information (partial packet contents) or cause a denial of service (router or component crash) via crafted IPv6 packets with a Type 0 routing header.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:20.454-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:02.696-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:52.250-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-4285">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8702"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8846"/>
        <criteria operator="OR">
          <criterion comment="config contains: ipv6 address" test_ref="oval:org.mitre.oval:tst:8725"/>
          <criterion comment="config contains: ipv6 enabled" test_ref="oval:org.mitre.oval:tst:8696"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5845" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS SNMP Malformed Message Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2004-0714" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0714"/>
        <description>Cisco Internetwork Operating System (IOS) 12.0S through 12.3T attempts to process SNMP solicited operations on improper ports (UDP 162 and a randomly chosen UDP port), which allows remote attackers to cause a denial of service (device reload and memory corruption).</description>
        <oval_repository>
          <dates>
            <submitted date="2008-04-30T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:20.103-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:02.949-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:52.962-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2004-0714">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8964"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8643"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5848" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Vendors SSH2 "buffer overflow" Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1359" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1359"/>
        <description>Multiple SSH2 servers and clients do not properly handle large packets or large fields, which may allow remote attackers to cause a denial of service or possibly execute arbitrary code via buffer overflow attacks, as demonstrated by the SSHredder SSH protocol test suite.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:19.752-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:03.150-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:53.225-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2002-1359">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8661"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8424"/>
        <criterion comment="config contains: crypto key generate rsa" test_ref="oval:org.mitre.oval:tst:8948"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5849" version="1" class="vulnerability">
      <metadata>
        <title>Multiple Vendors SSH2 "ncorrect length fields" Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2002-1357" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-1357"/>
        <description>Multiple SSH2 servers and clients do not properly handle packets or data elements with incorrect length specifiers, which may allow remote attackers to cause a denial of service or possibly execute arbitrary code, as demonstrated by the SSHredder SSH protocol test suite.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:19.616-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:03.369-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:53.642-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2002-1357">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8661"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8424"/>
        <criterion comment="config contains: crypto key generate rsa" test_ref="oval:org.mitre.oval:tst:8948"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5851" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Session Initiation Protocol (SIP) Packet Arbitrary Code Execution Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-4294" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4294"/>
        <description>Unspecified vulnerability in Cisco Unified Communications Manager (CUCM) 5.0, 5.1, and 6.0, and IOS 12.0 through 12.4, allows remote attackers to execute arbitrary code via a malformed SIP packet, aka CSCsi80102.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:19.279-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:03.605-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:54.027-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-4294">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8832"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8472"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5852" version="1" class="vulnerability">
      <metadata>
        <title>Cisco Systems IOS Easy VPN Server xauth Extension Access Validation Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2005-1057" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1057"/>
        <description>Cisco IOS 12.2T, 12.3 and 12.3T, when using Easy VPN Server XAUTH version 6 authentication, allows remote attackers to bypass authentication via a "malformed packet."</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:18.970-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:03.811-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:54.295-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2005-1057">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8755"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8721"/>
        <criteria operator="OR">
          <criterion comment="config contains: crypto map \S+ client authentication list" test_ref="oval:org.mitre.oval:tst:8976"/>
          <criteria operator="AND">
            <criterion comment="config contains: crypto isakmp profile" test_ref="oval:org.mitre.oval:tst:9110"/>
            <criterion comment="config contains: crypto isakmp profile" test_ref="oval:org.mitre.oval:tst:9110"/>
          </criteria>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5857" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS IPv6 Type 0 Routing Header DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-0481" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0481"/>
        <description>Cisco IOS allows remote attackers to cause a denial of service (crash) via a crafted IPv6 Type 0 Routing header.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:18.478-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:04.043-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:54.603-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-0481">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8879"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8736"/>
        <criteria operator="OR">
          <criterion comment="config contains: ipv6 address" test_ref="oval:org.mitre.oval:tst:8725"/>
          <criterion comment="config contains: ipv6 enabled" test_ref="oval:org.mitre.oval:tst:8696"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5858" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Fragmented Packet IPS Evasion Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-0917" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0917"/>
        <description>The Intrusion Prevention System (IPS) feature for Cisco IOS 12.4XE to 12.3T allows remote attackers to bypass IPS signatures that use regular expressions via fragmented packets.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:18.098-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:04.310-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:54.889-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-0917">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8199"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8865"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5859" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Malformed PPTP Packet Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-1183" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-1183"/>
        <description>PPTP implementation in Cisco IOS 12.1 and 12.2 allows remote attackers to cause a denial of service (crash) via a malformed packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:17.795-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:04.579-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:55.148-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-1183">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8778"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8717"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5860" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS UDP for IPv4/IPv6 Unspecified Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-1153" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1153"/>
        <description>Cisco IOS 12.1, 12.2, 12.3, and 12.4, with IPv4 UDP services and the IPv6 protocol enabled, allows remote attackers to cause a denial of service (device crash and possible blocked interface) via a crafted IPv6 packet to the device.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:17.363-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:04.794-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:55.428-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-1153">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8691"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8548"/>
        <criteria operator="OR">
          <criterion comment="config contains: ipv6 address" test_ref="oval:org.mitre.oval:tst:8725"/>
          <criterion comment="config contains: ipv6 enabled" test_ref="oval:org.mitre.oval:tst:8696"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5862" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS 12.0 Series Internet Router Allowance for Malicious Packets Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0864" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0864"/>
        <description>Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not properly handle the implicit "deny ip any any" rule in an outgoing ACL when the ACL contains exactly 448 entries, which can allow some outgoing packets to bypass access restrictions.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:16.638-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:05.018-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:55.719-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0864">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8175"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8762"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5866" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS VTY Authentication Bypass Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-4632" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4632"/>
        <description>Cisco IOS 12.2E, 12.2F, and 12.2S places a "no login" line into the VTY configuration when an administrator makes certain changes to a (1) VTY/AUX or (2) CONSOLE setting on a device without AAA enabled, which allows remote attackers to bypass authentication and obtain a terminal session, a different vulnerability than CVE-1999-0293 and CVE-2005-2105.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:16.314-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:05.216-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:55.970-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-4632">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8759"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8872"/>
        <criterion comment="config contains: no login" test_ref="oval:org.mitre.oval:tst:9004"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5869" version="1" class="vulnerability">
      <metadata>
        <title>Cisco 7600, Catalyst 6000 and 6500 MPLS Packet DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-1258" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1258"/>
        <description>Unspecified vulnerability in Cisco IOS 12.2SXA, SXB, SXD, and SXF; and the MSFC2, MSFC2a and MSFC3 running in Hybrid Mode on Cisco Catalyst 6000, 6500 and Cisco 7600 series systems; allows remote attackers on a local network segment to cause a denial of service (software reload) via a certain MPLS packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:15.391-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:05.715-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:56.733-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-1258">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8476"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8613"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5874" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS UDP 514 Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-1999-0063" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-1999-0063"/>
        <description>Cisco IOS 12.0 and other versions can be crashed by malicious UDP packets to the syslog port.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:15.001-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:05.913-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:56.968-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-1999-0063">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8596"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8788"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5892" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Protocol Check Design Error</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2001-0929" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0929"/>
        <description>Cisco IOS Firewall Feature set, aka Context Based Access Control (CBAC) or Cisco Secure Integrated Software, for IOS 11.2P through 12.2T does not properly check the IP protocol type, which could allow remote attackers to bypass access control lists.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:14.623-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:06.117-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:57.235-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2001-0929">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8757"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8245"/>
        <criterion comment="config contains: ip inspect" test_ref="oval:org.mitre.oval:tst:9064"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5918" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS HTTP Server Query Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2000-0984" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2000-0984"/>
        <description>The HTTP server in Cisco IOS 12.0 through 12.1 allows local users to cause a denial of service (crash and reload) via a URL containing a "?/" string.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:14.159-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:06.376-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:57.558-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2000-0984">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8864"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8803"/>
        <criterion comment="config contains: ^\s*ip http server" test_ref="oval:org.mitre.oval:tst:8123"/>
        <criterion negate="true" comment="config contains: ^\s*no ip http server" test_ref="oval:org.mitre.oval:tst:8920"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5938" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS HTTP Configuration Interface Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2000-0380" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2000-0380"/>
        <description>The IOS HTTP service in Cisco routers and switches running IOS 11.1 through 12.1 allows remote attackers to cause a denial of service by requesting a URL that contains a %% string.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-02T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:13.003-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:01:06.657-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:58.241-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2000-0380">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8807"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8890"/>
        <criterion comment="config contains: ^\s*ip http server" test_ref="oval:org.mitre.oval:tst:8123"/>
        <criterion negate="true" comment="config contains: ^\s*no ip http server" test_ref="oval:org.mitre.oval:tst:8920"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5302" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Firewall Application Inspection Control Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3812" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3812"/>
        <description>Cisco IOS 12.4, when IOS firewall Application Inspection Control (AIC) with HTTP Deep Packet Inspection is enabled, allows remote attackers to cause a denial of service (device reload) via a malformed HTTP transit packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-24T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-11-10T11:40:19.553-05:00">DRAFT</status_change>
            <status_change date="2008-12-01T04:00:11.806-05:00">INTERIM</status_change>
            <status_change date="2008-12-22T04:00:06.651-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-3812">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:9243"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5362" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Layer 2 Tunneling Protocol (L2TP) Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3813" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3813"/>
        <description>Unspecified vulnerability in Cisco IOS 12.2 and 12.4, when the L2TP mgmt daemon process is enabled, allows remote attackers to cause a denial of service (device reload) via a crafted L2TP packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-24T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-11-10T11:40:19.083-05:00">DRAFT</status_change>
            <status_change date="2008-12-01T04:00:12.212-05:00">INTERIM</status_change>
            <status_change date="2008-12-22T04:00:07.377-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-3813">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:9456"/>
        <criteria operator="OR" comment="Cisco ISO running configuration">
          <criterion comment="config contains: pseudowire .* (vcid)? .*" test_ref="oval:org.mitre.oval:tst:9158"/>
          <criterion comment="config contains: pseudowire .* (vcid)? .*" test_ref="oval:org.mitre.oval:tst:9213"/>
          <criterion comment="config contains: sgbp group .*" test_ref="oval:org.mitre.oval:tst:8540"/>
          <criterion comment="config contains: l2tp-class .*" test_ref="oval:org.mitre.oval:tst:9504"/>
          <criterion comment="config contains: pseudowire-class .*" test_ref="oval:org.mitre.oval:tst:9273"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5452" version="1" class="vulnerability">
      <metadata>
        <title>Cisco uBR10012 Series Devices SNMP Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3807" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3807"/>
        <description>Cisco IOS 12.2 and 12.3 on Cisco uBR10012 series devices, when linecard redundancy is configured, enables a read/write SNMP service with "private" as the community, which allows remote attackers to obtain administrative access by guessing this community and sending SNMP requests.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-24T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-11-10T11:40:18.277-05:00">DRAFT</status_change>
            <status_change date="2008-12-01T04:00:12.560-05:00">INTERIM</status_change>
            <status_change date="2008-12-22T04:00:07.706-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-3807">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:9448"/>
        <criteria operator="OR" comment="Cisco ISO running configuration">
          <criterion comment="config contains: member subslot .* working" test_ref="oval:org.mitre.oval:tst:9233"/>
          <criterion comment="config contains: hccp .* protect.*" test_ref="oval:org.mitre.oval:tst:8888"/>
        </criteria>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5477" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS (GSR device) Multicast DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3809" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3809"/>
        <description>Cisco IOS 12.0 through 12.4 on Gigabit Switch Router (GSR) devices (aka 12000 Series routers) allows remote attackers to cause a denial of service (device crash) via a malformed Protocol Independent Multicast (PIM) packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-24T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-11-10T11:40:17.730-05:00">DRAFT</status_change>
            <status_change date="2008-12-01T04:00:12.831-05:00">INTERIM</status_change>
            <status_change date="2008-12-22T04:00:08.004-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-3809">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:9240"/>
        <criterion comment="config contains: ip pim .*mode" test_ref="oval:org.mitre.oval:tst:9136"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5619" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS MPLS Forwarding Infrastructure Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3804" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3804"/>
        <description>Unspecified vulnerability in the Multi Protocol Label Switching (MPLS) Forwarding Infrastructure (MFI) in Cisco IOS 12.2 and 12.4 allows remote attackers to cause a denial of service (memory corruption) via crafted packets for which the software path is used.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-24T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-11-10T11:40:17.523-05:00">DRAFT</status_change>
            <status_change date="2008-12-01T04:00:13.081-05:00">INTERIM</status_change>
            <status_change date="2008-12-22T04:00:08.252-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-3804">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:9432"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5873" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Multicast DoS Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3808" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3808"/>
        <description>Unspecified vulnerability in Cisco IOS 12.0 through 12.4 allows remote attackers to cause a denial of service (device reload) via a crafted Protocol Independent Multicast (PIM) packet.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-24T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-11-10T11:40:17.120-05:00">DRAFT</status_change>
            <status_change date="2008-12-01T04:00:14.535-05:00">INTERIM</status_change>
            <status_change date="2008-12-22T04:00:08.538-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-3808">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:9240"/>
        <criterion comment="config contains: ip pim .*mode" test_ref="oval:org.mitre.oval:tst:9136"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5889" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Session Initiation Protocol Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3802" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3802"/>
        <description>Unspecified vulnerability in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 through 12.4, when VoIP is configured, allows remote attackers to cause a denial of service (device reload) via unspecified valid SIP messages, aka Cisco bug ID CSCsk42759, a different vulnerability than CVE-2008-3800 and CVE-2008-3801.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-24T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-11-10T11:40:16.747-05:00">DRAFT</status_change>
            <status_change date="2008-12-01T04:00:14.752-05:00">INTERIM</status_change>
            <status_change date="2008-12-22T04:00:08.974-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-3802">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:9025"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5900" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS NAT Skinny Call Control Protocol Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3811" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3811"/>
        <description>Cisco IOS 12.2 and 12.4, when NAT Skinny Call Control Protocol (SCCP) Fragmentation Support is enabled, allows remote attackers to cause a denial of service (device reload) via segmented SCCP messages, aka Cisco Bug ID CSCsi17020, a different vulnerability than CVE-2008-3810.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-24T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-11-10T11:40:16.460-05:00">DRAFT</status_change>
            <status_change date="2008-12-01T04:00:14.972-05:00">INTERIM</status_change>
            <status_change date="2008-12-22T04:00:09.265-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-3811">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8724"/>
        <criterion comment="config contains: ip nat inside" test_ref="oval:org.mitre.oval:tst:9169"/>
        <criterion comment="config contains: ip nat outside" test_ref="oval:org.mitre.oval:tst:9313"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5910" version="1" class="vulnerability">
      <metadata>
        <title>Cisco 10000, uBR10012, uBR7200 Series Devices IPC Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3805" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3805"/>
        <description>Cisco IOS 12.0 through 12.4 on Cisco 10000, uBR10012 and uBR7200 series devices handles external UDP packets that are sent to 127.0.0.0/8 addresses intended for IPC communication within the device, which allows remote attackers to cause a denial of service (device or linecard reload) via crafted UDP packets, a different vulnerability than CVE-2008-3806.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-24T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-11-10T11:40:16.078-05:00">DRAFT</status_change>
            <status_change date="2008-12-01T04:00:15.538-05:00">INTERIM</status_change>
            <status_change date="2008-12-22T04:00:09.510-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-3805">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:9269"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5919" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS MPLS VPN May Leak Information Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3803" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3803"/>
        <description>A "logic error" in Cisco IOS 12.0 through 12.4, when a Multiprotocol Label Switching (MPLS) VPN with extended communities is configured, sometimes causes a corrupted route target (RT) to be used, which allows remote attackers to read traffic from other VPNs in opportunistic circumstances.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-24T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-11-10T11:40:15.815-05:00">DRAFT</status_change>
            <status_change date="2008-12-01T04:00:16.022-05:00">INTERIM</status_change>
            <status_change date="2008-12-22T04:00:09.762-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-3803">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:9404"/>
        <criterion comment="config contains: address-family ipv(4|6) vrf" test_ref="oval:org.mitre.oval:tst:9411"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5927" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Session Initiation Protocol Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3799" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3799"/>
        <description>Memory leak in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 through 12.4, when VoIP is configured, allows remote attackers to cause a denial of service (memory consumption and voice-service outage) via unspecified valid SIP messages.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-24T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-11-10T11:40:15.031-05:00">DRAFT</status_change>
            <status_change date="2008-12-01T04:00:16.523-05:00">INTERIM</status_change>
            <status_change date="2008-12-22T04:00:10.037-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-3799">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:9025"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6047" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Session Initiation Protocol Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3801" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3801"/>
        <description>Unspecified vulnerability in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 through 12.4 and Unified Communications Manager 4.1 through 6.1, when VoIP is configured, allows remote attackers to cause a denial of service (device or process reload) via unspecified valid SIP messages, aka Cisco Bug ID CSCsm46064, a different vulnerability than CVE-2008-3800 and CVE-2008-3802.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-24T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-11-10T11:40:14.848-05:00">DRAFT</status_change>
            <status_change date="2008-12-01T04:00:17.416-05:00">INTERIM</status_change>
            <status_change date="2008-12-22T04:00:10.257-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-3801">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:9025"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6058" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS IPS Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-2739" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2739"/>
        <description>The SERVICE.DNS signature engine in the Intrusion Prevention System (IPS) in Cisco IOS 12.3 and 12.4 allows remote attackers to cause a denial of service (device crash or hang) via network traffic that triggers unspecified IPS signatures, a different vulnerability than CVE-2008-1447.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-24T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-11-10T11:40:14.680-05:00">DRAFT</status_change>
            <status_change date="2008-12-01T04:00:17.601-05:00">INTERIM</status_change>
            <status_change date="2008-12-22T04:00:10.516-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-2739">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:9142"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6086" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Session Initiation Protocol Denial of Service Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3800" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3800"/>
        <description>Unspecified vulnerability in the Session Initiation Protocol (SIP) implementation in Cisco IOS 12.2 through 12.4 and Unified Communications Manager 4.1 through 6.1, when VoIP is configured, allows remote attackers to cause a denial of service (device or process reload) via unspecified valid SIP messages, aka Cisco Bug ID CSCsu38644, a different vulnerability than CVE-2008-3801 and CVE-2008-3802.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-24T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-11-10T11:40:14.034-05:00">DRAFT</status_change>
            <status_change date="2008-12-01T04:00:17.789-05:00">INTERIM</status_change>
            <status_change date="2008-12-22T04:00:10.754-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-3800">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:9025"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6087" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS Processing SSL Packet Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3798" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3798"/>
        <description>Cisco IOS 12.4 allows remote attackers to cause a denial of service (device crash) via a normal, properly formed SSL packet that occurs during termination of an SSL session.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-24T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-11-10T11:40:13.722-05:00">DRAFT</status_change>
            <status_change date="2008-12-01T04:00:17.972-05:00">INTERIM</status_change>
            <status_change date="2008-12-22T04:00:11.002-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-3798">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:9378"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:6112" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS NAT Skinny Call Control Protocol Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2008-3810" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3810"/>
        <description>Cisco IOS 12.2 and 12.4, when NAT Skinny Call Control Protocol (SCCP) Fragmentation Support is enabled, allows remote attackers to cause a denial of service (device reload) via segmented SCCP messages, aka CSCsg22426, a different vulnerability than CVE-2008-3811.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-09-24T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-11-10T11:40:13.353-05:00">DRAFT</status_change>
            <status_change date="2008-12-01T04:00:18.876-05:00">INTERIM</status_change>
            <status_change date="2008-12-22T04:00:11.232-05:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2008-3810">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8724"/>
      </criteria>
    </definition>
    <definition id="oval:org.mitre.oval:def:5036" version="1" class="vulnerability">
      <metadata>
        <title>Cisco IOS FTP Server Authentication Bypass Vulnerability</title>
        <affected family="ios">
          <platform>Cisco IOS</platform>
        </affected>
        <reference source="CVE" ref_id="CVE-2007-2586" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2586"/>
        <description>The IOS FTP Server in Cisco IOS 11.3 through 12.4 does not properly check user authorization, which allows remote authenticated users to execute arbitrary code and read and write arbitrary files, as demonstrated by reading startup-config, aka bug ID CSCek55259.</description>
        <oval_repository>
          <dates>
            <submitted date="2008-05-26T11:06:36.000-04:00">
              <contributor organization="Hewlett-Packard">Yuzheng Zhou</contributor>
            </submitted>
            <status_change date="2008-07-30T16:33:49.753-04:00">DRAFT</status_change>
            <status_change date="2008-08-18T04:00:17.196-04:00">INTERIM</status_change>
            <status_change date="2008-09-08T04:00:15.218-04:00">ACCEPTED</status_change>
          </dates>
          <status>ACCEPTED</status>
        </oval_repository>
      </metadata>
      <criteria operator="AND" comment="Cisco ISO meets CVE-2007-2586">
        <criterion comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8323"/>
        <criterion negate="true" comment="IOS vulnerable versions" test_ref="oval:org.mitre.oval:tst:8479"/>
        <criterion comment="config contains: ftp-server enable" test_ref="oval:org.mitre.oval:tst:8637"/>
      </criteria>
    </definition>
  </definitions>
  <tests>
    <line_test id="oval:org.mitre.oval:tst:8983" version="1" comment="config contains: parameter-map type tms" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4259"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8967" version="1" comment="config contains: method tls" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3994"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8848" version="1" comment="config contains: crypto signaling default trustpoint" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3579"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8527" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3115"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8044" version="3" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3493"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8624" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4096"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8103" version="2" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4076"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:9042" version="2" comment="config contains: aaa authorization commands .*tacacs+" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4044"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8876" version="2" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4000"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8666" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3580"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8885" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3326"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8684" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3318"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8847" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4103"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8641" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3461"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8855" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3732"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8732" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3339"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:9102" version="1" comment="config contains: crypto map" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3723"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:9066" version="1" comment="config contains: ip pmtu" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4051"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8954" version="1" comment="config contains: tunnel path-mtu-discovery" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3533"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8933" version="1" comment="config contains: tunnel protection" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4001"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8608" version="1" comment="config contains: ip tcp path-mtu-discovery" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3970"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8503" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3053"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8451" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3059"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8891" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4064"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8453" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4177"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8870" version="1" comment="config contains: call-manager-fallback" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3189"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8822" version="1" comment="config contains: telephony-service" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3343"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8727" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3636"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8432" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3508"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8720" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3060"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8675" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3963"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8829" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4175"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8632" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4136"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8828" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4122"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8227" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4038"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8953" version="1" comment="config contains: router bgp" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6197"/>
      <state state_ref="oval:org.mitre.oval:ste:4162"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8462" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6256"/>
      <state state_ref="oval:org.mitre.oval:ste:4205"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8383" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6256"/>
      <state state_ref="oval:org.mitre.oval:ste:4258"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8922" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6256"/>
      <state state_ref="oval:org.mitre.oval:ste:4204"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8659" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6256"/>
      <state state_ref="oval:org.mitre.oval:ste:4264"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8602" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4010"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8543" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4013"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8859" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3989"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8446" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3112"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8814" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4079"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8514" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3744"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:9094" version="1" comment="config contains: authentication open eap" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4128"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:9068" version="1" comment="config contains: dot1x pae both" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4234"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8994" version="1" comment="config contains: wlccp authentication-server infrastructure" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4250"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8941" version="1" comment="config contains: dot1x pae authenticator" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4195"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8877" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4085"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8665" version="1" comment="config contains: authentication network-eap" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4161"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8620" version="1" comment="config contains: wlccp authentication-server client" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3397"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8533" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3971"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8878" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3293"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8874" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3899"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8758" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4131"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8763" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4022"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8579" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4101"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8576" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3708"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8546" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4153"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8880" version="1" comment="config contains: ip auth-proxy" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4241"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8869" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4068"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8728" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4112"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:7897" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3741"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8806" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3862"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8258" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4081"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8663" version="1" comment="config contains: ip inspect name \S+ http" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4063"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8550" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3043"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8512" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3216"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:9003" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6256"/>
      <state state_ref="oval:org.mitre.oval:ste:4214"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8884" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6256"/>
      <state state_ref="oval:org.mitre.oval:ste:4272"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8787" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3379"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8635" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3082"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8836" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3776"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8618" version="1" comment="config contains: ip scp server enable" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4209"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8345" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3346"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8688" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3378"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8676" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3394"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8519" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3130"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8899" version="1" comment="config contains: proxy h323" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4050"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8786" version="1" comment="config contains: ip inspect name \S+ h323" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4198"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:9093" version="1" comment="config contains: ip nat inside" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3537"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8816" version="1" comment="config contains: ip nat outside" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4233"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8748" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4165"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8685" version="1" comment="config contains: ip access-group \S+ in" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4134"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8290" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4120"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8704" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3402"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:9078" version="1" comment="config contains: protocol pptp" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4206"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8950" version="1" comment="config contains: protocol any" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4086"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8900" version="1" comment="config contains: vpdn-group" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4239"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8784" version="1" comment="config contains: vpdn enable" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3249"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8768" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3894"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8607" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3938"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8795" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3523"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8460" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3720"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8833" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3121"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8719" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4005"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8464" version="1" comment="config contains: ^\s*rtr responder" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4012"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8974" version="1" comment="config contains: no service dhcp" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4088"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8838" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3044"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:7843" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3206"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8826" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3267"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8793" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3353"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8749" version="1" comment="config contains: router bgp" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4199"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8882" version="1" comment="config contains: mdt default" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3239"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8722" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3203"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8529" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4077"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8841" version="1" comment="config contains: bgp log-neighbor-changes" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3624"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8771" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4032"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8694" version="1" comment="config contains: snmp-server enable traps bgp" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3856"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8628" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3558"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8761" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3087"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8638" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3233"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8564" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4130"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8747" version="1" comment="config contains: mpls traffic-eng tunnels" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4124"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8682" version="1" comment="config contains: tag-switching ip" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4074"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8652" version="1" comment="config contains: mpls ip" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3984"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8506" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3996"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:7886" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3414"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8811" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3840"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8333" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3973"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8783" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4009"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8482" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3717"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8863" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3560"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8093" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3966"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8955" version="1" comment="config contains: ip nhrp network-id" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3609"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8862" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4093"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8062" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3099"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8837" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4045"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8252" version="1" comment="config contains: l2-filter block-arp" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3309"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8121" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4083"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8772" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3824"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8616" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3313"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8734" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3387"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8670" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3198"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8647" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3055"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8569" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3197"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8766" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4017"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8552" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3162"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8798" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4106"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8973" version="1" comment="config contains: dlsw local-peer" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4221"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8853" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3158"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8809" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4057"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8851" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4111"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8481" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4043"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8889" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4150"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8737" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3176"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8871" version="1" comment="config contains: router eigrp" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4121"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8536" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3155"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8989" version="1" comment="config contains: cns config \S+ \S+ encrypt" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4229"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8866" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3109"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8625" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4018"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8800" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3526"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8750" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4019"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:9081" version="1" comment="config contains: aaa authentication login \S+ group radius local none" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4189"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:9040" version="1" comment="config contains: aaa authentication ppp \S+ group radius local none" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4027"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8909" version="1" comment="config contains: aaa authentication login \S+ group radius none" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4215"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8860" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3274"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8538" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3958"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8410" version="1" comment="config contains: aaa authentication ppp \S+ group radius none" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4235"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8756" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4008"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8671" version="1" comment="config contains: no ip unreachables" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3707"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8513" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3090"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8785" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4037"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8767" version="1" comment="config contains: ^\s*ip http secure-server" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3998"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8567" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3084"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8357" version="1" comment="config contains: ^\s*no ip http secure-server" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3581"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8695" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3063"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8467" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3211"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8910" version="1" comment="config contains: service mgcpapp" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4210"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8886" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4114"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8714" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3304"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8545" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3962"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8111" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4041"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8823" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4078"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8723" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4015"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8926" version="1" comment="config contains: dlsw local-peer" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4148"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8735" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4087"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8729" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3322"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8908" version="1" comment="config contains: no cdp enable" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3401"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8904" version="1" comment="config contains: ^\s*no cdp run" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3600"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8852" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3648"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8789" version="1" comment="config contains: cdp enable" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3227"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8782" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4024"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8706" version="1" comment="config contains: ^\s*cdp run" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4172"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:9089" version="1" comment="config contains: aaa new-model" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4071"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8849" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3370"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8699" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3867"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8603" version="1" comment="config contains: enable secret" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4166"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8554" version="1" comment="config contains: ^\s*ip http authentication" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3187"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8515" version="1" comment="config contains: ^\s*ip http" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3551"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8120" version="1" comment="config contains: enable password" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3698"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8894" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3467"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8639" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4070"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:9014" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6256"/>
      <state state_ref="oval:org.mitre.oval:ste:4248"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8738" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6256"/>
      <state state_ref="oval:org.mitre.oval:ste:4133"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8895" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4061"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8850" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3563"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8601" version="1" comment="config contains: ip ips \S+ in" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4107"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8509" version="1" comment="config contains: ip ips \S+ out" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4163"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:9043" version="1" comment="config contains: ^\s*ip http secure-server" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6197"/>
      <state state_ref="oval:org.mitre.oval:ste:4089"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:9032" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6256"/>
      <state state_ref="oval:org.mitre.oval:ste:4276"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8992" version="1" comment="config contains: ^\s*no ip http secure-server" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6197"/>
      <state state_ref="oval:org.mitre.oval:ste:4183"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8760" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6256"/>
      <state state_ref="oval:org.mitre.oval:ste:4252"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8623" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6256"/>
      <state state_ref="oval:org.mitre.oval:ste:4075"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8970" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6256"/>
      <state state_ref="oval:org.mitre.oval:ste:4154"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8821" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6256"/>
      <state state_ref="oval:org.mitre.oval:ste:4238"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8873" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4069"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8582" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3160"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8846" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3266"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8702" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3507"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8964" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6256"/>
      <state state_ref="oval:org.mitre.oval:ste:4184"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8643" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6256"/>
      <state state_ref="oval:org.mitre.oval:ste:3884"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8948" version="1" comment="config contains: crypto key generate rsa" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4047"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8661" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4036"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8424" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3231"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8832" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4026"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8472" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3100"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:9110" version="1" comment="config contains: crypto isakmp profile" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4021"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8976" version="1" comment="config contains: crypto map \S+ client authentication list" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4249"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8755" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3441"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8721" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4031"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8879" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3628"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8736" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3979"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8865" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4097"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8199" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3417"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8778" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3997"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8717" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4023"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8725" version="1" comment="config contains: ipv6 address" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4055"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8696" version="1" comment="config contains: ipv6 enabled" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3918"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8691" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4091"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8548" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3627"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8762" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4060"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8175" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4025"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:9004" version="1" comment="config contains: no login" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4208"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8872" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3561"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8759" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3423"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8613" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3704"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8476" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4105"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8788" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3454"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8596" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3964"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:9064" version="1" comment="config contains: ip inspect" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4174"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8757" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3896"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8245" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3161"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8864" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4073"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8803" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4014"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8920" version="1" comment="config contains: ^\s*no ip http server" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3798"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8890" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3386"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8807" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:4062"/>
    </version_test>
    <line_test id="oval:org.mitre.oval:tst:8123" version="1" comment="config contains: ^\s*ip http server" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:4067"/>
    </line_test>
    <version55_test id="oval:org.mitre.oval:tst:9243" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6804"/>
      <state state_ref="oval:org.mitre.oval:ste:4497"/>
    </version55_test>
    <line_test id="oval:org.mitre.oval:tst:9504" version="1" comment="config contains: l2tp-class .*" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6654"/>
      <state state_ref="oval:org.mitre.oval:ste:4601"/>
    </line_test>
    <version55_test id="oval:org.mitre.oval:tst:9456" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6804"/>
      <state state_ref="oval:org.mitre.oval:ste:3655"/>
    </version55_test>
    <line_test id="oval:org.mitre.oval:tst:9273" version="1" comment="config contains: pseudowire-class .*" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6654"/>
      <state state_ref="oval:org.mitre.oval:ste:4626"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:9213" version="1" comment="config contains: pseudowire .* (vcid)? .*" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6654"/>
      <state state_ref="oval:org.mitre.oval:ste:4262"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:9158" version="1" comment="config contains: pseudowire .* (vcid)? .*" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6654"/>
      <state state_ref="oval:org.mitre.oval:ste:4567"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8540" version="1" comment="config contains: sgbp group .*" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6654"/>
      <state state_ref="oval:org.mitre.oval:ste:4390"/>
    </line_test>
    <version55_test id="oval:org.mitre.oval:tst:9448" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6804"/>
      <state state_ref="oval:org.mitre.oval:ste:4625"/>
    </version55_test>
    <line_test id="oval:org.mitre.oval:tst:9233" version="1" comment="config contains: member subslot .* working" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6654"/>
      <state state_ref="oval:org.mitre.oval:ste:4533"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:8888" version="1" comment="config contains: hccp .* protect.*" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6654"/>
      <state state_ref="oval:org.mitre.oval:ste:4556"/>
    </line_test>
    <version55_test id="oval:org.mitre.oval:tst:9432" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6804"/>
      <state state_ref="oval:org.mitre.oval:ste:3687"/>
    </version55_test>
    <version55_test id="oval:org.mitre.oval:tst:9240" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6804"/>
      <state state_ref="oval:org.mitre.oval:ste:4420"/>
    </version55_test>
    <line_test id="oval:org.mitre.oval:tst:9136" version="1" comment="config contains: ip pim .*mode" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6654"/>
      <state state_ref="oval:org.mitre.oval:ste:4632"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:9313" version="1" comment="config contains: ip nat outside" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6654"/>
      <state state_ref="oval:org.mitre.oval:ste:4656"/>
    </line_test>
    <line_test id="oval:org.mitre.oval:tst:9169" version="1" comment="config contains: ip nat inside" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6654"/>
      <state state_ref="oval:org.mitre.oval:ste:4011"/>
    </line_test>
    <version55_test id="oval:org.mitre.oval:tst:9269" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6804"/>
      <state state_ref="oval:org.mitre.oval:ste:4358"/>
    </version55_test>
    <line_test id="oval:org.mitre.oval:tst:9411" version="1" comment="config contains: address-family ipv(4|6) vrf" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6654"/>
      <state state_ref="oval:org.mitre.oval:ste:4517"/>
    </line_test>
    <version55_test id="oval:org.mitre.oval:tst:9404" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6804"/>
      <state state_ref="oval:org.mitre.oval:ste:4638"/>
    </version55_test>
    <version55_test id="oval:org.mitre.oval:tst:9142" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6804"/>
      <state state_ref="oval:org.mitre.oval:ste:4550"/>
    </version55_test>
    <version55_test id="oval:org.mitre.oval:tst:9025" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6804"/>
      <state state_ref="oval:org.mitre.oval:ste:4432"/>
    </version55_test>
    <version55_test id="oval:org.mitre.oval:tst:9378" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6804"/>
      <state state_ref="oval:org.mitre.oval:ste:4448"/>
    </version55_test>
    <version55_test id="oval:org.mitre.oval:tst:8724" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6804"/>
      <state state_ref="oval:org.mitre.oval:ste:4399"/>
    </version55_test>
    <line_test id="oval:org.mitre.oval:tst:8637" version="1" comment="config contains: ftp-server enable" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6385"/>
      <state state_ref="oval:org.mitre.oval:ste:3281"/>
    </line_test>
    <version_test id="oval:org.mitre.oval:tst:8479" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3407"/>
    </version_test>
    <version_test id="oval:org.mitre.oval:tst:8323" version="1" comment="IOS vulnerable versions" check_existence="at_least_one_exists" check="at least one" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <object object_ref="oval:org.mitre.oval:obj:6251"/>
      <state state_ref="oval:org.mitre.oval:ste:3111"/>
    </version_test>
  </tests>
  <objects>
    <line_object id="oval:org.mitre.oval:obj:6197" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
    </line_object>
    <version_object id="oval:org.mitre.oval:obj:6256" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios"/>
    <line_object id="oval:org.mitre.oval:obj:6654" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
    </line_object>
    <version55_object id="oval:org.mitre.oval:obj:6804" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios"/>
    <line_object id="oval:org.mitre.oval:obj:6385" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
    </line_object>
    <version_object id="oval:org.mitre.oval:obj:6251" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios"/>
  </objects>
  <states>
    <line_state id="oval:org.mitre.oval:ste:4259" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">parameter-map type tms</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:3994" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">method tls</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:3579" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">crypto signaling default trustpoint</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3115" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.4\(10\)|12\.4\(7d\)|12\.4\(6\)T7|12\.2\(18\)SXF8|12\.3\(14\)YX7|12\.2\(25\)EWA9|12\.2\(25\)SEE3|12\.2\(31\)SGA1|12\.3\(8\)XX2d|12\.4\(4\)XC6|12\.4\(11\)T1|12\.4\(11\)SW1|12\.2\(37\)SG|12\.4\(11\)XJ2|12\.2\(33\)SRB|12\.2\(33\)SRA3|12\.3\(17b\)BC6|12\.4\(9\)T3|12\.3\(22\)|12\.2\(31\)SB2|12\.2\(35\)SE2|12\.4\(4\)XD6|12\.3\(21a\)BC1</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3493" version="3" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">(^12\.2(\([1-9]\d?[a-z]?\))?(B[CZ]?|C[X-Z]|E(WA|[X-Z])|F[X-Z]|J[AK]|S(B|E[A-G]?|G[A]?|R[AB]|X[D-F])|T|XR|Y([UV])?|Z([D-H]|[JLNUW]))[1-9]?$)|(^12\.3((\([1-9]\d?[a-z]?\))?(B[C]?|J([AKLX]|EA)|T(PC)?|X([A-K]|[QRSUWX])|Y([AD]|[F-I]|[KQ]|[S-U]|[XZ]))[1-9]?)?$)|(^12\.4((\([1-9]\d?[a-z]?\))?(T|SW|X([A-E]|J))[1-9]?)?$)</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4096" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.3\(8\)T9|12\.3\(10d\)|12\.3\(14\)YT|12\.3\(2\)JK|12\.3\(11\)XL3|12\.3\(6e\)|12\.3\(11\)YS|12\.3\(11\)YF2|12\.3\(14\)T2|12\.3\(4\)XK4|12\.3\(8\)YG2|12\.3\(2\)XA5|12\.3\(5e\)|12\.3\(14\)YQ|12\.3\(9a\)BC7|12\.3\(4\)XG5|12\.4\(1\)|12\.3\(2\)XC3|12\.2\(13\)ZH8|12\.3\(13a\)|12\.3\(4\)XK4|12\.4\(2\)MR|12\.3\(11\)T6|12\.3\(7\)T10|12\.3\(7\)XR4|12\.3\(15\)|12\.3\(14\)YU|12\.3\(7\)XI4|12\.3\(9d\)|12\.4\(2\)T|12\.3T|12\.3\(3h\)|12\.3\(2\)XE4|12\.3\(11\)YK1|12\.3\(12b\)|12\.3\(8\)YI1|12\.3\(7\)JA|12\.3\(11\)YW</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4076" version="2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2(\(\d+\))?SG\d*|12\.2(\(\d+\))?SEC\d*|12\.2(\(\d+\))?SXF\d*|12\.2(\(\d+\))?SH\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZL\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?JA\d*|12\.3(\(\d+\))?JK\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XL\d*|12\.3(\(\d+\))?XM\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YQ\d*|12\.3(\(\d+\))?YS\d*|12\.3(\(\d+\))?YT\d*|12\.3(\(\d+\))?YU\d*|12\.3(\(\d+\))?YW\d*|12\.4(\(\d+\))?\d*|12\.4(\(\d+\))?MR\d*|12\.4(\(\d+\))?T\d*</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4044" version="2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">aaa authorization commands .*tacacs\+</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:4000" version="2" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.4\(2\)T4|12\.2\(30\)S|12\.2\(17d\)SXB9|12\.2\(14\)S16|12\.3\(14\)T7|12\.3\(16\)|12\.2\(18\)SXF4|12\.2\(18\)SXD6|12\.3\(14\)YM6|12\.4\(7\)|12\.3\(7\)XI7|12\.2\(25\)S6|12\.1\(26\)E5|12\.3BC|12\.4\(3d\)|12\.2\(32\)|12\.2\(18\)S11|12\.4\(4\)T2|12\.2\(18\)SXE3|12\.2\(25\)SW5|12\.3\(11\)T10|12\.4\(6\)T</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3580" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XK\d*|12\.0(\(\d+\))?XL\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XR\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EZ\d*|12\.1(\(\d+\))?GA\d*|12\.1(\(\d+\))?GB\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XE\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XS\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XW\d*|12\.1(\(\d+\))?XY\d*|12\.1(\(\d+\))?XZ\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YH\d*|12\.1(\(\d+\))?YI\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?MX\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SXE\d*|12\.2(\(\d+\))?SXF\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XS\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XV\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YK\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZN\d*|12\.2(\(\d+\))?ZP\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XM\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YM\d*|12\.3(\(\d+\))?YQ\d*|12\.3(\(\d+\))?YS\d*|12\.3(\(\d+\))?YT\d*|12\.3(\(\d+\))?YU\d*|12\.3(\(\d+\))?YX\d*|12\.4(\(\d+\))?\d*|12\.4(\(\d+\))?MR\d*|12\.4(\(\d+\))?T\d*|12\.4(\(\d+\))?XA\d*|12\.4(\(\d+\))?XB\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3326" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?DB\d*|12\.0(\(\d+\))?DC\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SC\d*|12\.0(\(\d+\))?SL\d*|12\.0(\(\d+\))?SP\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?SX\d*|12\.0(\(\d+\))?SY\d*|12\.0(\(\d+\))?SZ\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?WC\d*|12\.0(\(\d+\))?XE\d*|12\.0(\(\d+\))?XF\d*|12\.0(\(\d+\))?XG\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XJ\d*|12\.0(\(\d+\))?XK\d*|12\.0(\(\d+\))?XL\d*|12\.0(\(\d+\))?XM\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XQ\d*|12\.0(\(\d+\))?XR\d*|12\.0(\(\d+\))?XS\d*|12\.0(\(\d+\))?XV\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?AX\d*|12\.1(\(\d+\))?AY\d*|12\.1(\(\d+\))?AZ\d*|12\.1(\(\d+\))?CX\d*|12\.1(\(\d+\))?DA\d*|12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EB\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EO\d*|12\.1(\(\d+\))?EU\d*|12\.1(\(\d+\))?EV\d*|12\.1(\(\d+\))?EW\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EY\d*|12\.1(\(\d+\))?EZ\d*|12\.1(\(\d+\))?GA\d*|12\.1(\(\d+\))?GB\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XE\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XS\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XW\d*|12\.1(\(\d+\))?XX\d*|12\.1(\(\d+\))?XY\d*|12\.1(\(\d+\))?XZ\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YH\d*|12\.1(\(\d+\))?YI\d*|12\.1(\(\d+\))?YJ\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?CY\d*|12\.2(\(\d+\))?DA\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?EU\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?EWA\d*|12\.2(\(\d+\))?EX\d*|12\.2(\(\d+\))?EY\d*|12\.2(\(\d+\))?EZ\d*|12\.2(\(\d+\))?FX\d*|12\.2(\(\d+\))?FY\d*|12\.2(\(\d+\))?FZ\d*|12\.2(\(\d+\))?IXA\d*|12\.2(\(\d+\))?JA\d*|12\.2(\(\d+\))?JK\d*|12\.2(\(\d+\))?MB\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SB\d*|12\.2(\(\d+\))?SBC\d*|12\.2(\(\d+\))?SE\d*|12\.2(\(\d+\))?SEA\d*|12\.2(\(\d+\))?SEB\d*|12\.2(\(\d+\))?SEC\d*|12\.2(\(\d+\))?SED\d*|12\.2(\(\d+\))?SEE\d*|12\.2(\(\d+\))?SEF\d*|12\.2(\(\d+\))?SEG\d*|12\.2(\(\d+\))?SG\d*|12\.2(\(\d+\))?SM\d*|12\.2(\(\d+\))?SO\d*|12\.2(\(\d+\))?SRA\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SXE\d*|12\.2(\(\d+\))?SXF\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?TPC\d*|12\.2(\(\d+\))?UZ\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XF\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XR\d*|12\.2(\(\d+\))?XS\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XV\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YK\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YO\d*|12\.2(\(\d+\))?YP\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YS\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZP\d*|12\.2(\(\d+\))?ZU\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?JA\d*|12\.3(\(\d+\))?JK\d*|12\.3(\(\d+\))?JL\d*|12\.3(\(\d+\))?JX\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?TPC\d*|12\.3(\(\d+\))?VA\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YM\d*|12\.3(\(\d+\))?YQ\d*|12\.3(\(\d+\))?YS\d*|12\.3(\(\d+\))?YT\d*|12\.3(\(\d+\))?YU\d*|12\.3(\(\d+\))?YX\d*|12\.3(\(\d+\))?YZ\d*|12\.4(\(\d+\))?\d*|12\.4(\(\d+\))?MR\d*|12\.4(\(\d+\))?T\d*|12\.4(\(\d+\))?XA\d*|12\.4(\(\d+\))?XB\d*|12\.4(\(\d+\))?XC\d*|12\.4(\(\d+\))?XD\d*|12\.4(\(\d+\))?XE\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3318" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.4\(10\)|12\.3\(4\)TPC11b|12\.2\(18\)SXF12a|12\.3\(7\)JX11|12\.2\(13\)ZH9|12\.3\(11\)YZ2|12\.3\(18a\)|12\.3\(2\)XC5|12\.2\(18\)SXF6|12\.2\(25\)SEG2|12\.3\(21\)|12\.3\(8\)JA3|12\.2\(18\)EW7|12\.3\(2\)XA6|12\.3\(2\)XA7|12\.2\(31\)SG1|12\.2\(31\)SG2|12\.2\(28d\)|12\.2\(18\)SXF15|12\.2\(25\)EWA14|12\.2\(29\)SVD1|12\.2\(25\)EWA11|12\.3\(14\)YM12|12\.3\(14\)YM8|12\.2\(29\)SM2|12\.2\(29\)SM3|12\.2\(25\)SEF2|12\.1\(1\)E2|12\.3\(17b\)BC3|12\.2\(10\)DA4|12\.2\(20\)EWA3|12\.2\(31\)SB12|12\.3\(11\)YK3|12\.1\(22\)EA10|12\.4\(4\)XD4|12\.2\(14\)S18|12\.2\(29b\)|12\.2\(15\)MC2h|12\.4\(6\)XE2|12\.2\(27\)SV5|12\.3\(7\)XR7|12\.4\(6\)T4|12\.3\(19a\)|12\.2\(25\)EWA8|12\.2\(44\)SG|12\.2\(25\)SEE3|12\.3\(7\)JA5|12\.2\(29\)SVD1|12\.0\(2\)XF|12\.2\(31\)SB3x|12\.4\(4\)XC5|12\.2\(18\)SXF15|12\.4\(7c\)|12\.4\(5c\)|12\.2\(33\)XN1|12\.0\(33\)S|12\.2\(20\)S13|12\.2\(33\)SXH3|12\.2\(18\)SXE6a|12\.2\(29\)SV3|12\.2\(18\)S13|12\.2\(33\)SRC1|12\.3\(11\)T11|12\.4\(8b\)|12\.2\(18\)SXD7a|12\.4\(9\)T1|12\.3\(14\)YX11|12\.3\(21\)BC|12\.3\(8\)JK2|12\.2\(28\)SV1|12\.2\(37\)EY|12\.2\(40\)|12\.3\(8\)JK1|12\.4\(9\)MR|12\.4\(3f\)|12\.3\(2\)XE5|12\.1\(19\)EO6|12\.2\(27c\)|12\.2\(44\)EX|12\.0\(7\)SC|12\.4\(18b\)|12\.3\(11\)JA|12\.4\(15\)T5|12\.3\(2\)JK4|12\.3\(2\)JK2|12\.2\(18\)ZU1|12\.2\(29b\)SV|12\.0\(30\)SZ4|12\.2\(33\)SRA1|12\.3\(17c\)|12\.4\(4\)T5|12\.0\(1\)XE|12\.3\(20a\)|12\.2\(29a\)SV1|12\.3\(8\)YG6|12\.4\(2\)XB3|12\.2\(31\)SB2|12\.4\(2\)T6|12\.2\(44\)SE2|12\.2\(25\)SG1|12\.0\(32\)S5|12\.3\(7\)XI8a|12\.2\(12\)DA11|12\.2\(25\)SW8|12\.3\(14\)YX4|12\.2\(25\)EWA7|12\.0\(28\)S1|12\.2\(31\)SGA7|12\.0\(32\)SY1|12\.2\(18\)SO7|12\.1\(7\)CX|12\.0\(5\)WC16|12\.2\(18\)SXF10a|12\.4\(11\)T|12\.2\(37\)SG|12\.1\(22\)EA11|12\.0\(2\)XF1|12\.2\(35\)SE|12\.0\(4\)XI2|12\.2\(13\)ZH11|12\.2\(25\)S11|12\.2\(28\)SB4|12\.0\(2\)DB|12\.2\(26c\)|12\.0\(1\)T|12\.2\(35\)EX|12\.3\(2\)JL4|12\.3\(2\)JL1|12\.2\(20\)EW4</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4103" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.0(\(\d+\))?\w*\d*|11\.1(\(\d+\))?\w*\d*|11\.2(\(\d+\))?\w*\d*|11\.3(\(\d+\))?\w*\d*|12\.0(\(\d+\))?\w*\d*|12\.1(\(\d+\))?\w*\d*|12\.2(\(\d+\))?\w*\d*|12\.3(\(\d+\))?\w*\d*|12\.4(\(\d+\))?\w*\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3461" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.4(\(\d+\))?JK\d*|12\.2(\(\d+\))?SXD\d*|12\.3(\(\d+\))?T\d*|12\.4(\(\d+\))?\d*|12\.4(\(\d+\))?T\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3732" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(20\)S9|12\.2\(15\)JK5|12\.3\(4\)TPC11a|12\.4\(1b\)|12\.3\(16\)|12\.0\(28d\)|12\.2\(12m\)|12\.1\(22\)EA5a|12\.1\(22\)EA5a|12\.2\(18\)EW5|12\.3\(2\)XA5|12\.3\(4\)XE4|12\.2\(26b\)|12\.2\(30\)S1|12\.2\(25\)EX|12\.3\(7\)T12|12\.2\(4\)YA11|12\.1\(22\)EA4a|12\.0\(28\)W5-32a|12\.2\(10\)DA4|12\.2\(20\)EWA3|12\.0\(25\)W5-27d|12\.3\(11\)YK2|12\.2\(25\)FY|12\.2\(25\)FX|12\.2\(15\)CZ3|12\.2\(28c\)|12\.2\(29a\)|12\.3\(10e\)|12\.2\(15\)MC2e|12\.2\(14\)S15|12\.3\(14\)T4|12\.2\(31\)|12\.2\(25\)EWA3|12\.3\(7\)JA1|12\.3\(7\)XI7|12\.2\(8\)TPC10a|12\.1\(22\)EA4a|12\.3\(11\)YS1|12\.3\(12e\)|12\.2\(2\)XR|12\.3\(14\)YU1|12\.1\(26\)E3|12\.3\(8\)T11|12\.1\(23\)E4|12\.3\(4\)XK4|12\.0\(30\)S4|12\.3\(6f\)|12\.3\(4\)XG5|12\.1\(8b\)E20|12\.2\(18\)S10|12\.2\(20\)EU2|12\.2\(27b\)|12\.3\(9a\)BC7|12\.1\(26\)EB1|12\.2\(17d\)SXB10|12\.3\(7\)JX|12\.2\(27\)SV1|12\.2\(25\)SEB4|12\.3\(2\)XC4|12\.2\(15\)T17|12\.4\(2\)XA|12\.2\(4\)MB13c|12\.2\(13\)ZD4|12\.3\(2\)XA5|12\.2\(25\)SEC2|12\.3\(11\)YF4|12\.3\(15b\)|12\.3\(7\)XI7|12\.4\(4\)T|12\.2\(27\)SBC|12\.2\(25\)S6|12\.4\(5\)|12\.3\(2\)JK1|12\.2\(25\)SG|12\.3\(14\)YQ3|12\.3\(7\)XR6|12\.2\(23f\)|12\.1\(19\)EW3|12\.2\(17f\)|12\.2\(25\)SEB4|12\.1\(22\)EA6|12\.2\(25\)EY3|12\.3\(4\)JA1|12\.2\(25\)SED|12\.0\(31\)S1|12\.3\(8\)YI3|12\.2\(15\)YS|12\.3\(13b\)|12\.2\(22\)EA6|12\.3\(13a\)BC1|12\.4\(2\)T1|12\.2\(26\)SV1|12\.1\(20\)EW4|12\.3\(8\)YG3|12\.2\(18\)SXD6|12\.4\(2\)MR1|12\.2\(12\)DA9|12\.0\(5\)WC13|12\.3\(3i\)|12\.2\(18\)SO4|12\.1\(27b\)|12\.2\(13\)ZH8|12\.2\(4\)XR|12\.4\(3a\)|12\.3\(14\)YT1|12\.3\(11\)T8|12\.1\(20\)EO3|12\.1\(12c\)EW4|12\.2\(15\)XR|12\.3\(5f\)|12\.4\(2\)XB|12\.2\(18\)SXE3|12\.3\(9e\)|12\.2\(25\)SW4|12\.0\(28\)W5-30b|12\.2\(15\)BC2i|12\.2\(18\)SXF|12\.0\(28\)S5|12\.3\(2\)JA5|12\.1\(13\)E17|12\.1\(13\)EW4|12\.2\(20\)EW3</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3339" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?DA\d*|12\.0(\(\d+\))?DB\d*|12\.0(\(\d+\))?DC\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SC\d*|12\.0(\(\d+\))?SL\d*|12\.0(\(\d+\))?SP\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?SX\d*|12\.0(\(\d+\))?SZ\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?W5\d*|12\.0(\(\d+\))?WC\d*|12\.0(\(\d+\))?XA\d*|12\.0(\(\d+\))?XB\d*|12\.0(\(\d+\))?XC\d*|12\.0(\(\d+\))?XD\d*|12\.0(\(\d+\))?XE\d*|12\.0(\(\d+\))?XF\d*|12\.0(\(\d+\))?XG\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XJ\d*|12\.0(\(\d+\))?XK\d*|12\.0(\(\d+\))?XL\d*|12\.0(\(\d+\))?XM\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XQ\d*|12\.0(\(\d+\))?XR\d*|12\.0(\(\d+\))?XS\d*|12\.0(\(\d+\))?XV\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?AX\d*|12\.1(\(\d+\))?AY\d*|12\.1(\(\d+\))?AZ\d*|12\.1(\(\d+\))?CX\d*|12\.1(\(\d+\))?DA\d*|12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EB\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EO\d*|12\.1(\(\d+\))?EU\d*|12\.1(\(\d+\))?EV\d*|12\.1(\(\d+\))?EW\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EY\d*|12\.1(\(\d+\))?EZ\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XE\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XS\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XW\d*|12\.1(\(\d+\))?XX\d*|12\.1(\(\d+\))?XY\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YH\d*|12\.1(\(\d+\))?YI\d*|12\.1(\(\d+\))?YJ\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BX\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?CY\d*|12\.2(\(\d+\))?CZ\d*|12\.2(\(\d+\))?DA\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?EU\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?EWA\d*|12\.2(\(\d+\))?EX\d*|12\.2(\(\d+\))?EY\d*|12\.2(\(\d+\))?EZ\d*|12\.2(\(\d+\))?FX\d*|12\.2(\(\d+\))?FY\d*|12\.2(\(\d+\))?JA\d*|12\.2(\(\d+\))?JK\d*|12\.2(\(\d+\))?MB\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SBC\d*|12\.2(\(\d+\))?SE\d*|12\.2(\(\d+\))?SG\d*|12\.2(\(\d+\))?SO\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SXE\d*|12\.2(\(\d+\))?SXF\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?TPC\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XF\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XR\d*|12\.2(\(\d+\))?XS\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XV\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YK\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YO\d*|12\.2(\(\d+\))?YP\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YS\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZN\d*|12\.2(\(\d+\))?ZP\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?JA\d*|12\.3(\(\d+\))?JK\d*|12\.3(\(\d+\))?JX\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?TPC\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XM\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XX\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YQ\d*|12\.3(\(\d+\))?YS\d*|12\.3(\(\d+\))?YT\d*|12\.3(\(\d+\))?YU\d*|12\.4(\(\d+\))?\d*|12\.4(\(\d+\))?MR\d*|12\.4(\(\d+\))?T\d*|12\.4(\(\d+\))?XA\d*|12\.4(\(\d+\))?XB\d*</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:3723" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">crypto map</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:4051" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">ip pmtu</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:3533" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">tunnel path-mtu-discovery</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:4001" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">tunnel protection</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:3970" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">ip tcp path-mtu-discovery</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3053" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?DA\d*|12\.0(\(\d+\))?DB\d*|12\.0(\(\d+\))?DC\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SC\d*|12\.0(\(\d+\))?SL\d*|12\.0(\(\d+\))?SP\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?SX\d*|12\.0(\(\d+\))?SZ\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?W5\d*|12\.0(\(\d+\))?WC\d*|12\.0(\(\d+\))?XA\d*|12\.0(\(\d+\))?XB\d*|12\.0(\(\d+\))?XC\d*|12\.0(\(\d+\))?XD\d*|12\.0(\(\d+\))?XE\d*|12\.0(\(\d+\))?XF\d*|12\.0(\(\d+\))?XG\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XJ\d*|12\.0(\(\d+\))?XK\d*|12\.0(\(\d+\))?XL\d*|12\.0(\(\d+\))?XM\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XQ\d*|12\.0(\(\d+\))?XR\d*|12\.0(\(\d+\))?XS\d*|12\.0(\(\d+\))?XV\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?AX\d*|12\.1(\(\d+\))?AZ\d*|12\.1(\(\d+\))?DA\d*|12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EB\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EO\d*|12\.1(\(\d+\))?EU\d*|12\.1(\(\d+\))?EV\d*|12\.1(\(\d+\))?EW\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EY\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XE\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YH\d*|12\.1(\(\d+\))?YI\d*|12\.1(\(\d+\))?YJ\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?CY\d*|12\.2(\(\d+\))?CZ\d*|12\.2(\(\d+\))?DA\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?EU\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?EWA\d*|12\.2(\(\d+\))?EX\d*|12\.2(\(\d+\))?EY\d*|12\.2(\(\d+\))?JA\d*|12\.2(\(\d+\))?JK\d*|12\.2(\(\d+\))?MB\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SE\d*|12\.2(\(\d+\))?SO\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XF\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XR\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YK\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YO\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZK\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZN\d*|12\.2(\(\d+\))?ZP\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?JA\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XL\d*|12\.3(\(\d+\))?XM\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XT\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XX\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YN\d*|12\.3(\(\d+\))?YQ\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3059" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.3\(3h\)|12\.2\(18\)SO1|12\.3\(12b\)|12\.2\(17d\)SXB7|12\.3\(7\)T8|12\.2\(18\)SO|12\.2\(15\)ZL2|12\.2\(14\)S13|12\.3\(11\)YN|12\.2\(20\)S7|12\.3\(14\)T|12\.3\(6e\)|12\.1\(27\)|12\.3\(11\)YF2|12\.3\(8\)YG1|12\.0\(28\)S3|12\.2\(18\)SXD4|12\.3\(7\)T10|12\.3\(12\)|12\.2\(4\)YA9|12\.3\(14\)YQ|12\.2\(12\)DA8|12\.0\(28c\)|12\.2\(18\)EW3|12\.1\(19\)EO4|12\.2\(25\)SEA|12\.0\(27\)S5|12\.2S|12\.0\(25\)W5\(27c\)|12\.3\(7\)XI5|12\.3\(8\)YI|12\.2\(25\)S3|12\.1\(26\)E1|12\.0\(28\)W5\(31a\)|12\.2\(28\)|12\.1\(23\)E3|12\.2\(13\)ZH6|12\.2\(25\)EY|12\.3\(11\)YK|12\.2\(25\)EWA|12\.3\(9d\)|12\.0\(5\)WC12|12\.3\(11\)T4|12\.3\(4\)JA|12\.0\(30\)S1|12\.3\(13a\)|12\.1\(22\)E6|12\.2\(20\)EU|12\.3\(5e\)|12\.3\(7\)XI3|12\.3\(10c\)|12\.3\(2\)XC3|12\.1\(22\)EA4|12\.3\(8\)T7|12\.3\(13\)|12\.2\(18\)S8|12\.2\(15\)BC2f|12\.3\(11\)YF2|12\.0\(31\)S|12\.2\(25\)SEB|12\.3\(8\)XY4|12\.3\(15\)|12\.2\(15\)T15|12\.3\(9a\)BC2</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4064" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">9.\d(\(\d+\))?\w*\d*|10\.\d(\(\d+\))?\w*\d*|11\.0(\(\d+\))?\w*\d*|11\.1(\(\d+\))?\w*\d*|11\.2(\(\d+\))?\w*\d*|11\.3(\(\d+\))?\w*\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4177" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.3\(1\)|11\.3\(1\)ED|11\.3\(1\)T|11\.2\(10\)|11\.2\(9\)P|11\.2\(9\)XA|11\.2\(10\)BC|11\.2\(8\)SA3|11\.1\(15\)CA|11\.1\(16\)|11\.1\(16\)IA|11\.1\(16\)AA|11\.1\(17\)CC|11\.1\(17\)CT|11\.0\(20\.3\)</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:3189" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">call-manager-fallback</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:3343" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">telephony-service</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3636" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(15\)JK2|12\.3\(6c\)|12\.3\(4\)XD3|12\.3\(2\)XE1|12\.3\(9\)BC|12\.3\(11\)T|12\.2\(4\)YA8|12\.3\(4\)XK1|12\.3\(2\)T7|12\.3\(4\)XQ1|12\.2\(13\)T14|12\.3\(4\)XN2|12\.3\(7\)XI|12\.3\(7\)XL|12\.3\(4\)XG2|12\.3\(7\)T1|12\.3\(5d\)|12\.3\(9\)|12\.3\(7\)XJ2|12\.3\(4\)T6|12\.3\(8\)T|12\.2\(15\)CZ1|12\.2\(15\)T13</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3508" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YI\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?CZ\d*|12\.2(\(\d+\))?JK\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?XZ\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YS\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZK\d*|12\.2(\(\d+\))?ZO\d*|12\.2(\(\d+\))?ZP\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XL\d*|12\.3(\(\d+\))?XN\d*|12\.3(\(\d+\))?XQ\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3060" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(8\)T10|12\.2\(8\)T10|12\.0\(23\)S3|12\.2\(13\)ZH3|12\.1\(14\)E10|12\.2\(S\)|12\.2\(18\)S3|12\.2\(17a\)SXA|12\.2\(11\)T9|12\.3\(4\)T|12\.2\(4\)YA7|12\.0\(28\)|12\.2\(18\)S|12\.1\(20\)E2|12\.0\(27\)|12\.3\(3e\)|12\.2\(4\)YA8|12\.2\(16f\)|12\.2\(17\)|12\.2\(10g\)|12\.2\(11\)T9|12\.2\(19b\)|12\.3\(2\)T3|12\.2\(4\)T6|12\.1\(19\)E6|12\.2\(13\)T5|12\.1\(11b\)E14|12\.2\(8\)YW3|12\.1\(13\)E13|12\.2\(13\)T3|12\.2\(19\)b|12\.2\(15\)ZJ3|12\.0\(25\)S1|12\.2\(14\)SU|12\.2\(11\)T8|12\.1\(5\)T17|12\.2\(2\)XB14|12\.2\(2\)XB15|12\.2\(14\)S3|12\.2\(21a\)|12\.2\(13c\)|12\.2\(4\)T6|12\.1\(19\)E6|12\.2\(14\)SY3|12\.2\(13e\)|12\.1\(14\)E9|12\.2\(15\)T5|12\.2\(15\)ZJ2|12\.2\(17d\)|12\.2\(14\)S7|12\.2\(15\)T2|12\.2\(4\)T8|12\.2\(15\)ZL1|12\.1\(22\)|12\.2\(13\)ZC|12\.0\(26\)S|12\.3\(4\)T1|16-Jan-2004|12\.2\(15\)SL1|12\.1\(8b\)E16|12\.1\(13\)E12|12\.1\(8b\)E18|12\.2\(16a\)|12\.0\(24\)S2</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3963" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.3\(3\)T\d*|12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?XC\d*|12\.0(\(\d+\))?XD\d*|12\.0(\(\d+\))?XG\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XJ\d*|12\.0(\(\d+\))?XK\d*|12\.0(\(\d+\))?XL\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XQ\d*|12\.0(\(\d+\))?XR\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EZ\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?X\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XW\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YH\d*|12\.1(\(\d+\))?YI\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?MX\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XS\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YK\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.3(\(\d+\))?T\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4175" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.0(\(\d+\))?\w*\d*|11\.1(\(\d+\))?\d*|11\.1(\(\d+\))?AA\d*|11\.1(\(\d+\))?CA\d*|11\.1(\(\d+\))?CC\d*|11\.1(\(\d+\))?CT\d*|11\.1(\(\d+\))?IA\d*|11\.2(\(\d+\))?\d*|11\.2(\(\d+\))?BC\d*|11\.2(\(\d+\))?F\d*|11\.2(\(\d+\))?GS\d*|11\.2(\(\d+\))?P\d*|11\.2(\(\d+\))?SA\d*|11\.2(\(\d+\))?WA3\d*|11\.2(4)XA\d*|11\.2(9)XA\d*|11\.3(\(\d+\))?\d*|11\.3(\(\d+\))?AA\d*|11\.3(\(\d+\))?DA\d*|11\.3(\(\d+\))?DB\d*|11\.3(\(\d+\))?HA\d*|11\.3(\(\d+\))?MA\d*|11\.3(\(\d+\))?NA\d*|11\.3(\(\d+\))?T\d*|11\.3(\(\d+\))?WA4\d*|11\.3(2)XA\d*|12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?DA\d*|12\.0(\(\d+\))?DB\d*|12\.0(\(\d+\))?DC\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SC\d*|12\.0(\(\d+\))?SL\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?SX\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?W5\d*|12\.0(\(\d+\))?WT\d*|12\.0(\(\d+\))?XA\d*|12\.0(\(\d+\))?XB\d*|12\.0(\(\d+\))?XC\d*|12\.0(\(\d+\))?XD\d*|12\.0(\(\d+\))?XE\d*|12\.0(\(\d+\))?XF\d*|12\.0(\(\d+\))?XG\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XJ\d*|12\.0(\(\d+\))?XK\d*|12\.0(\(\d+\))?XL\d*|12\.0(\(\d+\))?XM\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XP\d*|12\.0(\(\d+\))?XQ\d*|12\.0(\(\d+\))?XR\d*|12\.0(\(\d+\))?XS\d*|12\.0(\(\d+\))?XU\d*|12\.0(\(\d+\))?XV\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?DA\d*|12\.1(\(\d+\))?CX\d*|12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XE\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XK\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XS\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XW\d*|12\.1(\(\d+\))?XX\d*|12\.1(\(\d+\))?XY\d*|12\.1(\(\d+\))?XZ\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4136" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1\(4\.5\)EC|12\.1\(5\)YB|11\.1\(36\)CC1|12\.1\(5\)XU1|12\.0\(5c\)E8|12\.1\(6\)EC|11\.1\(36\)CA1|12\.1\(3\)XG3|12\.0\(14\)S1|11\.2\(25\)|12\.0\(4\)XH5|12\.1\(4\)DC2|11\.3\(11b\)T1|12\.0\(13\)W5\(19c\)|12\.1\(5\)XY4|11\.3\(11a\)AA|11\.3\(1\)MA8|12\.1\(3a\)XI6|12\.1\(5\)XM1|12\.1\(5\)DC|12\.1WC|12\.1\(4\)CX|12\.0\(14\.6\)S|12\.1\(4\)DC2|12\.1\(5c\)|12\.1\(6\)DA|12\.1\(5c\)EX|11\.3\(11b\)|12\.1\(5\)YC1|12\.1\(2\)XF3|12\.0WC|12\.0\(13W5\(19b\)|12\.1\(6\)E|12\.1\(5\)XZ2|12\.0\(13\)WT6\(1\)|12\.1\(5\)DB|12\.0\(14\)W5\(20\)|12\.0\(15\)S1|12\.1\(3\)XL1|12\.1\(3\)XP3|12\.0\(10\)W\(18b\)|12\.1\(5\)EC1|12\.0\(7\)XK4|11\.2\(25a\)|11\.2\(25\)P|12\.1\(5\)DA1|12\.0\(11\)ST2|12\.1\(7\)AA|12\.1\(4\)DB1|11\.2\(25a\)P|12\.0\(14\)SL1|12\.1\(5\)T5|12\.1\(5\)XV1|12\.1\(4\)DB1|12\.1\(5\)XS|12\.1\(5\)YD|12\.0\(5\)XM1|12\.1\(5\)T5|12\.1\(2\)XH5|12\.1\(5\)XW2|12\.0\(15\)|12\.1\(5\)XR1|12\.1\(5\.6\)E|11\.1\(22a\)|12\.1\(5\)XX3|12\.1\(5\)YA1|12\.1\(5\)E8|11\.1\(28a\)IA1|12\.1\(3\)XT1|12\.1\(5\)DA1|12\.0\(15\)SC1|12\.1\(7\)|12\.1\(3\)XQ3|12\.1\(7\)|11\.1\(24a\)|12\.1\(5c\)E8</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4122" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.2(\(\d+\))?\w*\d*|11\.3(\(\d+\))?\w*\d*|12\.0(\(\d+\))?\w*\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4038" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.2\(19\)GS0\.2|12\.0\(8\.0\.2\)S|12\.0\(7\)S1|12\.0\(7\.4\)S|12\.0\(8\.3\)SC|12\.0\(7\)SC</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4162" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">router bgp</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:4205" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.1(\(\d+\))?\d*|11\.1(\(\d+\))?AA\d*|11\.1(\(\d+\))?CA\d*|11\.1(\(\d+\))?CC\d*|11\.2(\(\d+\))?\d*|11\.2(\(\d+\))?P\d*|11\.2(\(\d+\))?SA\d*|11\.3(\(\d+\))?\d*|11\.3(\(\d+\))?T\d*|12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?DA\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SL\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?SV\d*|12\.0(\(\d+\))?SX\d*|12\.0(\(\d+\))?SZ\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?W5\d*|12\.0(\(\d+\))?WC\d*|12\.0(\(\d+\))?WX\d*|12\.0(\(\d+\))?XA\d*|12\.0(\(\d+\))?XC\d*|12\.0(\(\d+\))?XD\d*|12\.0(\(\d+\))?XE\d*|12\.0(\(\d+\))?XG\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XJ\d*|12\.0(\(\d+\))?XK\d*|12\.0(\(\d+\))?XL\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XP\d*|12\.0(\(\d+\))?XR\d*|12\.0(\(\d+\))?XS\d*|12\.0(\(\d+\))?XU\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?AX\d*|12\.1(\(\d+\))?AZ\d*|12\.1(\(\d+\))?DA\d*|12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EB\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EO\d*|12\.1(\(\d+\))?EV\d*|12\.1(\(\d+\))?EW\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EY\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XE\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XY\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YH\d*|12\.1(\(\d+\))?YJ\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BX\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?DA\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?JA\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SE\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XS\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YO\d*|12\.2(\(\d+\))?YP\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YS\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZI\d*|12\.2(\(\d+\))?ZK\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZN\d*|12\.2(\(\d+\))?ZO\d*|12\.2(\(\d+\))?ZP\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?T\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4258" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.2\(26g\)|11\.2\(26\)P7|11\.3\(11f\)|11\.3\(11b\)T5|12\.0\(27\)|12\.0\(21\)S7|12\.0\(22\)S2e|12\.0\(22\)S3c|12\.0\(22\)S4a|12\.0\(22\)S5|12\.0\(23\)S3|12\.0\(24\)S2|12\.0\(25\)S1|12\.0\(26\)S|12\.0\(17\)ST10|12\.0\(21\)ST7|12\.0\(26\)S2|12\.0\(27\)SV|12\.0\(25\)SX|12\.0\(23\)SZ3|12\.0\(26\)SZ|12\.0\(16\)W5\(21c\)|12\.0\(25\)W5\(27b\)|12\.0\(26\)W5\(28a\)|12\.0\(27\)W5\(29\)|12\.1\(20\)|12\.1AY|12\.1\(14\)AZ|12\.1\(6\)E|12\.1\(8b\)E14|12\.1\(11b\)E|12\.1\(12c\)E7|12\.1\(13\)E6|12\.1\(14\)E4|12\.1\(19\)E|12\.1\(20\)E|12\.1\(14\)EA1|12\.1\(14\)EB1|12\.1\(19\)EC|12\.1\(19\)EO|12\.1\(12c\)EV2|12\.1\(19\)EW|12\.1\(14\)E4|12\.1\(5\)T1|12\.1\(5\)T19|12\.2\(4\)T6|12\.2\(8\)T10|12\.2\(4\)T6|12\.2\(8\)T10|12\.2\(13\)T5|12\.2\(10d\)|12\.2\(12e\)|12\.2\(12h\)M1|12\.2\(13c\)|12\.2\(16a\)|12\.2\(17\)|12\.2\(15\)B1|12\.2\(15\)BC1|12\.2\(15\)T12|12\.2\(16\)BX|12\.2\(15\)CX|12\.2\(12\)DA6|12\.2\(18\)EW|12\.2\(13\)JA|12\.2\(14\)S2|12\.2\(18\)S|12\.2\(18\)SE|12\.2\(14\)SU|12\.2\(18\)SV|12\.2\(18\)SW|12\.2\(14\)SX2|12\.2\(17b\)SXA|12\.2\(17d\)SXB|12\.2\(14\)SY|12\.2\(14\)SZ2|12\.2\(4\)T6|12\.2\(8\)T10|12\.2\(13\)T5|12\.2\(15\)T4|12\.2\(11\)T9|12\.2\(2\)XB16|12\.2\(8\)T10|12\.2\(15\)T12|12\.2\(11\)T11|12\.2\(8\)YY|12\.2\(13\)T5|12\.3\(2\)T|12\.2\(11\)YP1|12\.3\(4\)T|12\.2\(14\)SU|12\.2\(8\)YY3|12\.2\(14\)SZ|12\.2\(14\)ZA2|12\.2\(18\)S|12\.2\(15\)ZK|12\.2\(15\)ZL|12\.2\(15\)ZO|12\.2\(13\)ZP</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4204" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?DA\d*|12\.0(\(\d+\))?DB\d*|12\.0(\(\d+\))?DC\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SC\d*|12\.0(\(\d+\))?SL\d*|12\.0(\(\d+\))?SP\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?SX\d*|12\.0(\(\d+\))?SY\d*|12\.0(\(\d+\))?SZ\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?WC\d*|12\.0(\(\d+\))?XA\d*|12\.0(\(\d+\))?XB\d*|12\.0(\(\d+\))?XC\d*|12\.0(\(\d+\))?XD\d*|12\.0(\(\d+\))?XE\d*|12\.0(\(\d+\))?XF\d*|12\.0(\(\d+\))?XG\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XJ\d*|12\.0(\(\d+\))?XK\d*|12\.0(\(\d+\))?XL\d*|12\.0(\(\d+\))?XM\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XQ\d*|12\.0(\(\d+\))?XR\d*|12\.0(\(\d+\))?XS\d*|12\.0(\(\d+\))?XV\d*|12\.0(\(\d+\))?XW\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?AX\d*|12\.1(\(\d+\))?AY\d*|12\.1(\(\d+\))?AZ\d*|12\.1(\(\d+\))?CX\d*|12\.1(\(\d+\))?DA\d*|12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EB\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EO\d*|12\.1(\(\d+\))?EU\d*|12\.1(\(\d+\))?EV\d*|12\.1(\(\d+\))?EW\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EY\d*|12\.1(\(\d+\))?EZ\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XE\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XS\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XW\d*|12\.1(\(\d+\))?XX\d*|12\.1(\(\d+\))?XY\d*|12\.1(\(\d+\))?XZ\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YH\d*|12\.1(\(\d+\))?YI\d*|12\.1(\(\d+\))?YJ\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?CY\d*|12\.2(\(\d+\))?CZ\d*|12\.2(\(\d+\))?DA\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?EU\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?EWA\d*|12\.2(\(\d+\))?EX\d*|12\.2(\(\d+\))?EY\d*|12\.2(\(\d+\))?EZ\d*|12\.2(\(\d+\))?FX\d*|12\.2(\(\d+\))?FY\d*|12\.2(\(\d+\))?IXA\d*|12\.2(\(\d+\))?IXB\d*|12\.2(\(\d+\))?IXC\d*|12\.2(\(\d+\))?JA\d*|12\.2(\(\d+\))?JK\d*|12\.2(\(\d+\))?MB\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SB\d*|12\.2(\(\d+\))?SBC\d*|12\.2(\(\d+\))?SE\d*|12\.2(\(\d+\))?SEA\d*|12\.2(\(\d+\))?SEB\d*|12\.2(\(\d+\))?SEC\d*|12\.2(\(\d+\))?SED\d*|12\.2(\(\d+\))?SEE\d*|12\.2(\(\d+\))?SEF\d*|12\.2(\(\d+\))?SG\d*|12\.2(\(\d+\))?SO\d*|12\.2(\(\d+\))?SRA\d*|12\.2(\(\d+\))?SRB\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SXE\d*|12\.2(\(\d+\))?SXF\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?TPC\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XR\d*|12\.2(\(\d+\))?XS\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XV\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YK\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YP\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YS\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZN\d*|12\.2(\(\d+\))?ZP\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?JA\d*|12\.3(\(\d+\))?JK\d*|12\.3(\(\d+\))?JX\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?TPC\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*\|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XX\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YM\d*|12\.3(\(\d+\))?YQ\d*|12\.3(\(\d+\))?YS\d*|12\.3(\(\d+\))?YT\d*|12\.3(\(\d+\))?YU\d*|12\.3(\(\d+\))?YX\d*|12\.3(\(\d+\))?YZ\d*|12\.4(\(\d+\))?\d*|12\.4(\(\d+\))?MR\d*|12\.4(\(\d+\))?T\d*|12\.4(\(\d+\))?XA\d*|12\.4(\(\d+\))?XB\d*|12\.4(\(\d+\))?XC\d*|12\.4(\(\d+\))?XD\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4264" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(37\)|12\.2\(10\)DA5|12\.3\(4\)T13|12\.0\(31\)S6|12\.0\(32\)S4|12\.3\(13a\)BC6|12\.0\(31\)S6|12\.0\(25\)SX11|12\.0\(32\)SY|12\.2\(37\)|12\.0\(5\)WC15|12\.2\(37\)|12\.1\(26\)E7|12\.2\(37\)|12\.2\(25\)EY4|12\.1\(22\)EA8|12\.3\(4\)T13|12\.1\(26\)E7|12\.1\(27b\)E1|12\.1\(22\)EA8|12\.3\(13a\)BC6|12\.1EO|12\.1\(19\)EO6|12\.1\(20\)EO3|12\.2\(25\)EWA6|12\.2\(27\)SV4|12\.2\(25\)EWA6|12\.1\(26\)E7|12\.3\(19\)|12\.3\(4\)T13|12\.3\(7\)XI8|12\.3\(13a\)BC6|12\.2\(10\)DA5|12\.2\(12\)DA10|12\.2\(25\)EWA6|12\.2\(25\)EX1|12\.2\(25\)EY4|12\.2\(25\)SEE1|12\.2\(18\)IXD|12\.3\(8\)JA2|12\.4\(4\)T4|12\.2\(25\)SW8|12\.3\(11\)T11|12\.2\(25\)S12|12\.2\(28\)SB2|12\.2\(31\)SB|12\.2\(27\)SBC5|12\.2\(35\)SE|12\.2\(25\)SEE1|12\.2\(37\)SG|12\.2\(18\)SO7|12\.4\(8\)|12\.2\(27\)SV4|12\.2\(28\)SV1|12\.2\(29\)SV1|12\.2\(25\)SW8|12\.2\(18\)SXD7a|12\.2\(18\)SXD7a|12\.2\(18\)SXE6|12\.2\(18\)SXF5|12\.2\(18\)SXD7a|12\.2\(25\)S12|12\.3\(19\)|12\.3\(13a\)BC6|12\.3\(11\)T11|12\.2\(25\)S12|12\.4\(8\)|12\.3\(4\)T13|12\.2\(25\)S12|12\.2\(18\)SXD7a|12\.3\(19\)|12\.3\(4\)T13|12\.4\(8\)|12\.3\(10f\)|12\.3\(19\)|12\.3\(11\)T11|12\.3\(13a\)BC6|12\.3\(17a\)BC2|12\.3\(8\)JA2|12\.3\(2\)JK2|12\.3\(7\)JX4|12\.3\(11\)JX|12\.3\(4\)T13|12\.3\(11\)T11|12\.3\(11\)T11|12\.3\(7\)XI8|12\.3\(14\)YX2|12\.4\(8\)|12\.4\(2\)T5|12\.3\(14\)YX2|12\.4\(8\)|12\.4\(2\)T5|12\.3\(14\)YM8|12\.3\(14\)YQ8|12\.4\(4\)T4|12\.3\(14\)YX2|12\.3\(11\)YZ1|12\.4\(3e\)|12\.4\(7b\)|12\.4\(8\)|12\.4\(6\)MR1|12\.4\(2\)T5|12\.4\(6\)T3|12\.4\(9\)T|12\.4\(6\)T3|12\.4\(4\)XC3|12\.4\(4\)XD4</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4010" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.4(2)T5|12\.3(3)T\d*|12\.3(7)T\d*|12\.4(7a)|12\.4(6)T1|12\.4(3d)|12\.3(2)T\d*|12\.4(8)|12\.4(5b)|12\.3(1)T\d*|12\.4(9)T|12\.3(6)T\d*|12\.3(4)T\d*|12\.4(4)T3|12\.3(5)T\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4013" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.3(\(\d+\))?T\d*|12\.3(8)T\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XX\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YM\d*|12\.3(\(\d+\))?YQ\d*|12\.3(\(\d+\))?YT\d*|12\.3(\(\d+\))?YU\d*|12\.3(\(\d+\))?YX\d*|12\.3(\(\d+\))?YZ\d*|12\.4(\(\d+\))?\d*|12\.4(\(\d+\))?MR\d*|12\.4(\(\d+\))?SW\d*|12\.4(\(\d+\))?T\d*|12\.4(\(\d+\))?XA\d*|12\.4(\(\d+\))?XB\d*|12\.4(\(\d+\))?XC\d*|12\.4(\(\d+\))?XD\d*|12\.4(\(\d+\))?XE\d*|12\.4(\(\d+\))?XJ\d*|12\.4(\(\d+\))?XP\d*|12\.4(\(\d+\))?XT\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3989" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EX\d*|12\.2(\(\d+\))?EU\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?EWA\d*|12\.2(\(\d+\))?IXA\d*|12\.2(\(\d+\))?IXB\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SG\d*|12\.2(\(\d+\))?SGA\d*|12\.2(\(\d+\))?SRA\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SXE\d*|12\.2(\(\d+\))?SXF\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZU\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3112" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(18\)ZU1|12\.1\(13\)EX|12\.1\(12c\)EX|12\.2\(18\)SXD7a|12\.2\(18\)IXB2|12\.2\(18\)S5|12\.2\(33\)SRA2|12\.2\(18\)SXE6a|12\.2\(25\)SG1|12\.2\(14\)S3|12\.2\(20\)S|12\.2\(25\)EWA7|12\.1\(26\)E8|12\.2\(31\)SGA1|12\.1\(27b\)E1|12\.2\(18\)SXF5</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4079" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?ST\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3744" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0\(16\)S1|12\.0\(17\.1\)S|12\.0\(17\)S|12\.0\(15\.6\)ST3|12\.0\(17\.1\)ST|12\.0\(16\)ST</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4128" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">authentication open eap</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:4234" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">dot1x pae both</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:4250" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">wlccp authentication-server infrastructure</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:4195" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">dot1x pae authenticator</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:4085" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(25\)SG|12\.2\(18\)EW6|12\.1\(26\)EB2|12\.2\(25\)SED|12\.2\(25\)EWA4|12\.2\(18\)S13|12\.2\(33\)SRA4|12\.2\(18\)SXF9|12\.2\(20\)S13|12\.2(18)ZY1|12\.3\(8\)JEC|12\.2\(25\)EX|12\.4\(10b\)JA|12\.1\(22\)EA6|12\.2\(31\)SB6|12\.4.XW5|12\.1\(27b\)E2|12\.2\(25\)FX</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4161" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">authentication network-eap</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:3397" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">wlccp authentication-server client</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3971" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.3(\(\d+\))?JA\d*|12\.3(\(\d+\))?JEA\d*|12\.3(\(\d+\))?JEB\d*|12\.3(\(\d+\))?JEC\d*|12\.4(\(\d+\))?JA\d*|12\.4(\(\d+\))?JX\d*|12\.4(\(\d+\))?XW\d*|12\.1(\(\d+\))?\w*\d*|12\.2(\(\d+\))?\w*\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3293" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(14\)SY3|12\.2\(17a\)SX1|12\.1\(20\)E2|12\.1\(14\)E7</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3899" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2(\(\d+\))?S\d*|12\.1(\(\d+\))?E\d</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4131" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">10\.3(\(\w+\))?\w*\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4022" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?\w*\d*|12\.1(\(\d+\))?\w*\d*|12\.2(\(\d+\))?\w*\d*|12\.3(\(\d+\))?\w*\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4101" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.3\(8\)T|12\.2\(18\)SXD1|12\.4\(6\)T|12\.2\(33\)SRA|12\.2\(33\)SXH</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3708" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">10\.3(\(\d+\))?\w*\d*|11\.0(\(\d+\))?\w*\d*|11\.1(\(\d+\))?\d*|11\.1(\(\d+\))?AA\d*|11\.1(\(\d+\))?CA\d*|11\.1(\(\d+\))?CC\d*|11\.1(\(\d+\))?CT\d*|11\.1(\(\d+\))?IA\d*|11\.2(\(\d+\))?\d*|11\.2(\(\d+\))?BC\d*|11\.2(\(\d+\))?F\d*|11\.2(\(\d+\))?GS\d*|11\.2(\(\d+\))?P\d*|11\.2(\(\d+\))?SA\d*|11\.2(\(\d+\))?WA4\d*|11\.2(\(\d+\))?XA\d*|11\.3(\(\d+\))?\d*|11\.3(\(\d+\))?AA\d*|11\.3(\(\d+\))?DA\d*|11\.3(\(\d+\))?DB\d*|11\.3(\(\d+\))?HA\d*|11\.3(\(\d+\))?MA\d*|11\.3(\(\d+\))?NA\d*|11\.3(\(\d+\))?T\d*|11\.3(\(\d+\))?XA\d*|11\.3(\(\d+\))?WA4\d*|12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?DA\d*|12\.0(\(\d+\))?DB\d*|12\.0(\(\d+\))?DC\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SC\d*|12\.0(\(\d+\))?SL\d*|12\.0(\(\d+\))?SP\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?SY\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?W\d*|12\.0(\(\d+\))?W\d*|12\.0(\(\d+\))?W\d*|12\.0(\(\d+\))?WC\d*|12\.0(\(\d+\))?WT\d*|12\.0(\(\d+\))?XA\d*|12\.0(\(\d+\))?XB\d*|12\.0(\(\d+\))?XC\d*|12\.0(\(\d+\))?XD\d*|12\.0(\(\d+\))?XE\d*|12\.0(\(\d+\))?XF\d*|12\.0(\(\d+\))?XG\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XJ\d*|12\.0(\(\d+\))?(5)XK\d*|12\.0(\(\d+\))?(7)XK\d*|12\.0(\(\d+\))?XL\d*|12\.0(\(\d+\))?XM\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XP\d*|12\.0(\(\d+\))?XQ\d*|12\.0(\(\d+\))?XR\d*|12\.0(\(\d+\))?XS\d*|12\.0(\(\d+\))?XU\d*|12\.0(\(\d+\))?XV\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?DA\d*|12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EV\d*|12\.1(\(\d+\))?EW\d*|12\.1(\(\d+\))?(1)EX\d*|12\.1(\(\d+\))?(10)EX\d*|12\.1(\(\d+\))?EY\d*|12\.1(\(\d+\))?EZ\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XK\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XS\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XW\d*|12\.1(\(\d+\))?XX\d*|12\.1(\(\d+\))?XY\d*|12\.1(\(\d+\))?XZ\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YF\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BX\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?DA\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XZ\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?ZN\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4153" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0\(21\)SP1|12\.0\(21\.4\)SY|12\.2\(8\)T|12\.0W|12\.2\(4\)YA3|12\.0\(22\.4\)|12\.0\(16\)S9|12\.2\(7\.6\)B|12\.1|12\.2\(7\.4\)S|12\.0\(21\)ST3|12\.2\(4\)XZ5|12\.1\(12c\)E1|12\.0\(23\)S3|12\.1\(15\.3\)|12\.1\(16\)|12\.0\(23\)|12\.1\(12\.5\)E|12\.2\(14\)S|12\.0\(25\)W5\(27\)|12\.2T|12\.0WA|12\.1\(13\)EX|12\.2\(7\.4\)|12\.2B|12\.2\(9\.4\)DA|12\.2\(11\)T|12\.2\(2\)XB7|12\.2\(15\)B|12\.1\(10\)EV1b|12\.1\(13\)EC1|12\.2\(15\)ZN|12\.2\(15\)BW|12\.2\(10\)DA|12\.1\(18\.1\)E|12\.0\(24\)W5\(26\)|12\.1\(12\.5\)EC|12\.2\(15\)BX|12\.0ST|12\.1\(8b\)E14|12\.0\(21\)S3|12\.0\(22\)SY|12\.2\(6g\)|12\.0\(24\)W5\(26a\)|12\.0\(22\)S|12\.2\(2\)YC4|12\.2\(10\)|12\.1\(12c\)EW|12\.0\(5\)WC5a|12\.0\(05\)WC05a|12\.1\(8b\)E14|12\.0\(21\.4\)S|12\.1\(19\)E|12\.3|12\.2\(7\.4\)T|12\.1\(6\)EZ8|12\.0\(22\.3\)S1|12\.1\(10\)EV4|12\.1\(11\)EA1</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4241" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">ip auth-proxy</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:4068" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.3\(8\)T8|12\.2\(20\)S8|12\.2\(15\)JK4|12\.2\(15\)MC2c|12\.2\(4\)MB13b|12\.3\(11\)YJ|12\.2\(13\)ZD3|12\.3\(2\)JK|12\.2\(14\)S14|12\.3\(6e\)|12\.2\(25\)SEC1|12\.3\(11\)YF3|12\.2\(23\)SV1|12\.3\(14\)T2|12\.3\(8\)YG2|12\.2\(18\)SXD4|12\.3\(14\)YQ1|12\.3\(5e\)|12\.2\(25\)EWA1|12\.3\(13a\)BC|12\.2\(25\)SV2|12\.3\(14\)YU|12\.3\(7\)XI4|12\.2\(25\)SW3a|12\.3\(2\)XA4|12\.3\(2\)XC3|12\.2\(25\)EZ1|12\.3\(4\)XQ1|12\.2\(4\)YA10|12\.3\(7\)XR4|12\.2\(25\)S4|12\.3\(13a\)|12\.3\(5a\)B5|12\.0\(27\)S5|12\.3\(11\)T5|12\.4\(2\)MR|12\.3\(4\)JA|12\.0\(30\)S2|12\.2\(13\)T16|12\.3\(4\)XK3|12\.3\(8\)XY6|12\.2\(17d\)SXB8|12\.3\(4\)XG4|12\.0\(31\)S|12\.2\(15\)T16|12\.0\(26\)S6|12\.3\(2\)XE3|12\.3\(15\)|12\.3\(10d\)|12\.2\(15\)MC1c|12\.3\(8\)YI1|12\.2\(18\)SXE1|12\.3\(14\)YT|12\.3\(9d\)|12\.2\(25\)SEB3|12\.4\(2\)T|12\.3\(9a\)BC6|12\.2\(18\)S9|12\.2\(15\)BC2h|12\.3\(11\)YS|12\.2\(20\)EWA2|12\.0\(28\)S3|12\.3\(8\)YA1|12\.3\(3h\)|12\.4\(1\)|12\.2\(26\)SV|12\.2\(24\)SV1|12\.3\(12b\)|12\.2\(22\)SV1|12\.3\(7\)T9|12\.2\(20\)EU1|12\.2\(18\)SV3|12\.2\(20\)EW2</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4112" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SL\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?SY\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YH\d*|12\.1(\(\d+\))?YI\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?BX\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?CY\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?EU\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?EWA\d*|12\.2(\(\d+\))?EZ\d*|12\.2(\(\d+\))?JA\d*|12\.2(\(\d+\))?JK\d*|12\.2(\(\d+\))?MB\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?MX\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SEB\d*|12\.2(\(\d+\))?SEC\d*|12\.2(\(\d+\))?SO\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SXE\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XF\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XR\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?XZ\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YK\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YO\d*|12\.2(\(\d+\))?YP\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZN\d*|12\.2(\(\d+\))?ZO\d*|12\.2(\(\d+\))?ZP\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?JA\d*|12\.3(\(\d+\))?JK\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XL\d*|12\.3(\(\d+\))?XM\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XT\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XX\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YQ\d*|12\.3(\(\d+\))?YS\d*|12\.3(\(\d+\))?YT\d*|12\.3(\(\d+\))?YU\d*|12\.4(\(\d+\))?\d*|12\.4(\(\d+\))?MR\d*|12\.4(\(\d+\))?T\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3741" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.1(\(\d+\))?\w*\d*|11\.2(\(\d+\))?\w*\d*|11\.3(\(\d+\))?\w*\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3862" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0\(19\.6\)S|12\.0\(19\.6\)ST</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4081" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?ST\d*</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4063" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">ip inspect name \S+ http</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3043" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.4\(13f\)|12\.4\(16b\)|12\.4\(17a\)|12\.4\(18\)|12\.4\(16\)MR2|12\.4\(15\)SW1|12\.4\(9\)T6|12\.4\(11\)T4|12\.4\(15\)T2|12\.4\(20\)T|12\.4\(11\)XW6|12\.4\(18b\)|12\.4\(16b\)JA3|12\.4\(16\)MR|12\.4\(15\)T5</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3216" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.4(\(\d+\))?\d*|12\.4(13d)JA|12\.4(13d)JA1|12\.4(\(\d+\))?JK\d*|12\.4(\(\d+\))?JMA\d*|12\.4(\(\d+\))?JMB\d*|12\.4(\(\d+\))?JMC\d*|12\.4(\(\d+\))?JX\d*|12\.4(\(\d+\))?MD\d*|12\.4(\(\d+\))?MR\d*|12\.4(\(\d+\))?SW\d*|12\.4(\(\d+\))?T\d*|12\.4(\(\d+\))?XA\d*|12\.4(\(\d+\))?XB\d*|12\.4(\(\d+\))?XC\d*|12\.4(\(\d+\))?XD\d*|12\.4(\(\d+\))?XE\d*|12\.4(\(\d+\))?XF\d*|12\.4(\(\d+\))?XG\d*|12\.4(\(\d+\))?XJ\d*|12\.4(\(\d+\))?XK\d*|12\.4(\(\d+\))?XL\d*|12\.4(\(\d+\))?XM\d*|12\.4(\(\d+\))?XN\d*|12\.4(\(\d+\))?XQ\d*|12\.4(\(\d+\))?XT\d*|12\.4(\(\d+\))?XV\d*|12\.4(\(\d+\))?XW\d*|12\.4(\(\d+\))?XY\d*|12\.4(\(\d+\))?XZ\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4214" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(14\)SY3|12\.2\(17a\)SX1|12\.1\(20\)E2|12\.1\(14\)E7</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4272" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2(\(\d+\))?S\d*|12\.1(\(\d+\))?E\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3379" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0\(19\.3\)S|12\.0\(19\)S|12\.0\(18\.6\)ST1|12\.0\(19\.3\)ST|12\.0\(19\)ST</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3082" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?ST\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3776" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(18\)SXF9|12\.2\(18\)SXF10|12\.2\(18\)IXD1|12\.2\(33\)SXH</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4209" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">ip scp server enable</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3346" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2(\(\d+\))?IXA\d*|12\.2(\(\d+\))?IXB\d*|12\.2(\(\d+\))?IXC\d*|12\.2(\(\d+\))?IXD\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SXE\d*|12\.2(\(\d+\))?SXF\d*|12\.2(\(\d+\))?ZU\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3378" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1\(22\)EA3</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3394" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.1(\(\d+\))?\w*\d*|11\.2(\(\d+\))?\w*\d*|11\.3(\(\d+\))?\w*\d*|12\.0(\(\d+\))?\w*\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3130" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0\(19\)S|12\.0\(19\)ST|12\.1\(1\)|12\.1\(1\)DB|12\.1\(1\)DC|12\.1\(1\)T</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4050" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">proxy h323</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:4198" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">ip inspect name \S+ h323</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:3537" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">ip nat inside</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:4233" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">ip nat outside</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:4165" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0\(4\)T|12\.0\(5\)S|12\.0\(4\)T|12\.0\(4\)S|12\.0\(4\)T|12\.0\(4\)|12\.0\(2\)XE3|12\.0\(3\)T2|12\.0\(3b\)|12\.0\(3\)T2</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4134" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">ip access-group \S+ in</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:4120" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?DB\d*|12\.0(\(\d+\))?(1)W5(x)\d*|12\.0(\(\d+\))?(0\.6)W5\d*|12\.0(\(\d+\))?(1)XA3\d*|12\.0(\(\d+\))?(1)XB\d*|12\.0(\(\d+\))?(2)XC\d*|12\.0(\(\d+\))?(2)XD\d*|12\.0(\(\d+\))?(x)XE\d*|12\.0(\(\d+\))?(2)XF\d*|12\.0(\(\d+\))?(2)XG\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3402" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.0(\(\d+\))?\w*\d*|11\.1(\(\d+\))?\w*\d*|11\.2(\(\d+\))?\w*\d*|11\.3(\(\d+\))?\w*\d*|12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?T\d*</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4206" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">protocol pptp</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:4086" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">protocol any</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:4239" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">vpdn-group</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:3249" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">vpdn enable</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3894" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?XE\d*|12\.1(\(\d+\))?AY\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EZ\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XS\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XY\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YI\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?DA\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XF\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XS\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XV\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YO\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3938" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(8\)T|12\.2\(15\)T4e|12\.2\(18\)S|12\.2\(8\)BY|12\.2\(2\)XB5|12\.0\(7\)XE2|12\.2\(15\)BC1e|12\.1\(5\)YE6|12\.1\(22\)AY1|12\.2\(4\)BW1a|12\.2\(18\)SXF13|12\.1\(22\)EA11|12\.2\(4\)BW1|12\.2\(33\)SRC|12\.2\(17a\)SX|12\.2\(25\)S15|12\.2\(8\)BC1|12\.2\(15\)BC2d|12\.2\(31\)SB11|12\.4\(18a\)|12\.3\(26\)|12\.3\(23\)BC1|12\.2\(4\)B5|12\.1\(11\)EA1</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3523" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.0(\(\d+\))?\w*\d*|11\.1(\(\d+\))?\d*|11\.1(\(\d+\))?AA\d*|11\.1(\(\d+\))?CA\d*|11\.1(\(\d+\))?CC\d*|11\.2(\(\d+\))?\d*|11\.2(\(\d+\))?P\d*|11\.2(\(\d+\))?SA\d*|11\.3(\(\d+\))?\d*|11\.3(\(\d+\))?T\d*|12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?DA\d*|12\.0(\(\d+\))?DB\d*|12\.0(\(\d+\))?DC\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SC\d*|12\.0(\(\d+\))?SL\d*|12\.0(\(\d+\))?SP\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?SX\d*|12\.0(\(\d+\))?SY\d*|12\.0(\(\d+\))?SZ\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?W5\d*|12\.0(\(\d+\))?WC\d*|12\.0(\(\d+\))?WT\d*|12\.0(\(\d+\))?X\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?AX\d*|12\.1(\(\d+\))?AY\d*|12\.1(\(\d+\))?DA\d*|12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EB\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EV\d*|12\.1(\(\d+\))?EW\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EY\d*|12\.1(\(\d+\))?YJ\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?X\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YH\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YI\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BX\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?CY\d*|12\.2(\(\d+\))?DA\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?JA\d*|12\.2(\(\d+\))?MB\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?MX\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?X\d*|12\.2(\(\d+\))?Y\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XS\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YO\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XF\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YK\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YP\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YS\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3720" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1\(9\)EX|12\.2\(8\)YD|12\.0\(23\)S3|12\.2\(13\)ZH2|12\.1\(8b\)EX5|12\.2\(11\)BC3c|11\.2\(8\.11\)SA6|12\.2\(15\)YS|12\.0\(7\)T3|12\.2|12\.2\(14\)SX1|12\.1\(4b\)|12\.2\(8\)YY|12\.1\(13\)AY|12\.1\(20\)|12\.1\(13\)EA1c|12\.2\(8\)T10|12\.0\(16\)S10|12\.1\(6\)E12|12\.0\(25\)W5\(27\)|12\.0\(26\)W5\(28\)|12\.2DA|12\.2\(8\)YY3|12\.0\(5\)WC8|12\.1\(1\)EX|12\.1\(5\)T15|12\.2\(13b\)M2|11\.2\(17\)P1|12\.2\(14\)SY1|12\.2\(15\)T5|12\.1\(19\)|12\.3|12\.2\(8\)T0c|12\.1T|12\.1\(7\)E0a|12\.1\(19\)E|11\.1\(24c\)|12\.2\(4\)YA6|12\.0\(19b\)|12\.0\(21\)ST3a|12\.0\(21\)S5a|12\.1\(5\)T8c|12\.0\(19\)S2a|12\.1\(3a\)XI9|12\.0\(15b\)|12\.2\(13\)ZF1|12\.2\(14\)SZ2|12\.0\(16\)S8a|12\.1\(10\)E6a|12\.2\(13\)T1a|12\.2\(11\)T9|12\.2DA|12\.2\(4\)T6|12\.3\(1a\)|12\.0\(22\)S5|12\.2\(10d\)|12\.1\(14\)EA1|12\.0\(17\)ST8|12\.0\(19\)S4|12\.2\(4\)T6|12\.2\(14\)ZA2|12\.2\(14\)S1|12\.0\(16b\)|12\.0\(8b\)|12\.2\(16\.5\)S|12\.2\(7g\)|12\.2\(16\.5\)T|12\.2\(15\)MC1|12\.0\(12\)S4|12\.0\(25\)S1|12\.1\(5\)DB2|12\.2\(11\)YP1|12\.2\(12\)DA3|12\.0\(14\)S8|12\.0\(18\)S5a|12\.0\(20\)ST6|12\.1\(12c\)EW2|11\.1\(36\)CA4|12\.0\(18\)S7|11\.3\(11b\)T3|12\.1\(13a\)|12\.0\(21\)S4a|12\.2\(15\)BZ1|12\.0\(10\)S8|12\.0\(25\)S|12\.2\(12e\)|12\.0\(13\)S8|12\.0\(21\)SP4|12\.1\(11b\)E12|12\.0\(21\)ST7|12\.2T|12\.2\(1\)XS1a|12\.1\(17a\)|12\.2\(6j\)|12\.1\(18\.4\)|12\.0\(24\)S2|12\.1\(13\)EC4|12\.1\(5\)DC3|12\.2\(15\)ZL|12\.2\(2\)XB11|12\.1\(12c\)E7|12\.2\(15\)ZJ1|11\.2\(15b\)|12\.1\(6b\)|12\.2\(4\)B7a|12\.1\(13\)E8|12\.1\(13\)E7|12\.2\(4\)MB12|11\.1\(20\)AA5|11\.2\(26\)P5|12\.2\(2\)YC|11\.1\(36\)CC7|12\.1\(8b\)E14|12\.0\(10\)S3b|12\.0\(17\)SL9|12\.1\(12c\)EV2|11\.2\(20\)P1|12\.0\(26\)|12\.2\(10\)DA2|12\.1X|12\.2\(17\)|12\.1\(14\)EB|11\.2\(26e\)|12\.1\(19\)EC|12\.0\(19\)ST6|12\.2\(16\)B1|12\.0\(22\)S5|12\.1\(19\)EW|12\.0\(15\)S7|12\.2\(15\)T5|12\.2\(13\)T5|12\.1\(11b\)E0a|12\.1\(7a\)E1a|12\.2\(11\)T9|12\.2\(8\)T10|12\.2\(16\)BX|12\.0\(23\)S3|12\.0\(17\)S7|12\.0\(21\)S7|12\.2\(11\)JA|12\.1\(14\)E4|12\.2\(11\)YX1|11\.3\(11d\)|12\.2\(16a\)|12\.0\(24\)W5\(26c\)|12\.2\(11\)YZ2|12\.2\(8\)YW2|12\.2\(15\)BC1|12\.2\(13\)ZC|12\.1\(13\)EW2|12\.2\(8\)ZB7</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3121" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0\(21\.03\)SY|12\.2\(8\)YB|12\.2\(4\)YG|12\.1\(5\)T|12\.2\(8\)T|12\.1\(12\.5\)E|12\.0\(21\.03\)S|12\.2\(12\)DA|12\.2\(8\)YN|12\.1\(1\)T|12\.2|12\.1\(13\)E|12\.0\(21\)ST2|12\.1\(18\)|12\.1\(11b\)EW\(0\.46\)|12\.2\(12\)T|12\.2\(4\)XL5|12\.1\(4\)T|12\.1\(2\)T|12\.2\(13\.3\)B|12\.2\(10\.4\)|12\.0\(20\)SP3|12\.2\(4\)YA3|12\.2\(2\)XK3|12\.2\(4\)YC4|12\.2\(15\)BZ|12\.2\(11\.4\)DA|12\.0\(21\)S3|12\.0\(22\)SY|12\.1\(8\)EA1c|12\.0\(5\)WCa|12\.2\(10\)|12\.1EC|12\.2\(4\)YH|12\.1\(18\.1\)|12\.0\(19\)ST5|12\.0\(20\.04\)SP2|12\.2\(4\)YB|12\.2\(11\.1\)S|12\.1\(11b\)EW|12\.2\(1a\)XC5|12\.1\(12c\)EC|12\.2\(4\)MB5|12\.1\(11b\)EX</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4005" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SC\d*|12\.0(\(\d+\))?SL\d*|12\.0(\(\d+\))?SP\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?SX\d*|12\.0(\(\d+\))?SY\d*|12\.0(\(\d+\))?WC\d*|12\.0(\(\d+\))?XE\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EW\d*|12\.1(\(\d+\))?EW\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.2(\(\d+\))?\d*|12\.2(4)B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?DA\d*|12\.2(\(\d+\))?MB\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4012" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">^\s*rtr responder</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:4088" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">no service dhcp</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3044" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(18\)EW2|12\.2\(18\)S6|12\.2\(24\)SV|12\.2\(20\)EWA|12\.2\(20\)S4|12\.2\(25\)S|12\.2\(25\)SW|12\.2\(20\)SE3|12\.2\(22\)S2</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3206" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2(\(\d+\))?(18)EW\d*|12\.2(\(\d+\))?(20)EW\d*|12\.2(\(\d+\))?(18)EWA\d*|12\.2(\(\d+\))?(18)S\d*|12\.2(\(\d+\))?(18)SE\d*|12\.2(\(\d+\))?(18)SV\d*|12\.2(\(\d+\))?(18)SW\d*|12\.2(\(\d+\))?(14)SZ\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3267" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.1\(36\)CC2|12\.0\(16\.06\)S|12\.0\(16\)W5\(21\)|12\.0\(15\)S3|12\.0\(5\)T|12\.0ST|12\.0\(17\)S|12\.0\(10\)W5\(18g\)|12\.1\(8\)|12\.0\(17\)|12\.0\(16\)S1</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3353" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.1(\(\d+\))?CA\d*|11\.1(\(\d+\))?CC\d*|11\.1(\(\d+\))?CT\d*|11\.2(\(\d+\))?\d*|11\.2(\(\d+\))?BC\d*|11\.2(\(\d+\))?F\d*|11\.2(\(\d+\))?GS\d*|11\.2(\(\d+\))?P\d*|11\.2(\(\d+\))?(4)XA\d*|11\.2(\(\d+\))?(9)XA\d*|11\.3(\(\d+\))?\d*|11\.3(\(\d+\))?AA\d*|11\.3(\(\d+\))?DA\d*|11\.3(\(\d+\))?DB\d*|11\.3(\(\d+\))?HA\d*|11\.3(\(\d+\))?MA\d*|11\.3(\(\d+\))?NA\d*|11\.3(\(\d+\))?T\d*|11\.3(\(\d+\))?WA4\d*|11\.3(\(\d+\))?(2)XA\d*|12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?DA\d*|12\.0(\(\d+\))?DB\d*|12\.0(\(\d+\))?DC\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?W5\d*|12\.0(\(\d+\))?XA\d*|12\.0(\(\d+\))?XB\d*|12\.0(\(\d+\))?XC\d*|12\.0(\(\d+\))?XD\d*|12\.0(\(\d+\))?XF\d*|12\.0(\(\d+\))?XG\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XJ\d*</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4199" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">router bgp</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:3239" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">mdt default</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3203" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.3\(4\)TPC11b|12\.4\(6\)XT2|12\.4\(11\)MD1|12\.2\(18\)SXF12a|12\.2\(13\)ZH9|12\.4\(15\)T|12\.3\(11\)YZ2|12\.3\(18a\)|12\.2\(25\)SEG4|12\.3\(22a\)|12\.2\(33\)XN1|12\.2\(25\)SEG3|12\.2\(37\)SG1|12\.4\(4\)XC7|12\.3\(2\)XA6|12\.3\(2\)XA7|12\.2\(31\)SG2|14-APR-08|12\.2\(18\)SXF10|12\.2\(18\)SXF13|12\.2\(25\)EWA10|12\.3\(14\)YM10|12\.3\(14\)YM12|12\.2\(18\)ZY1|12\.2\(18\)ZY2|12\.3\(21b\)|12\.2\(29\)SM2|12\.2\(31\)SB11|12\.3\(17b\)BC8|12\.3\(11\)YK3|12\.4\(4\)XD8|12\.4\(13c\)|12\.2\(14\)S18|12\.4\(6\)T8|12\.3\(7\)XI10a|12\.2\(15\)MC2h|12\.4\(6\)XE2|12\.2\(15\)MC2k|12\.3\(19a\)|12\.4\(15\)SW|12\.2\(44\)SG|12\.2\(25\)SEE4|12\.2\(29\)SVD|12\.3\(11\)YS2|12\.4\(11\)SW3|12\.4\(16\)|12\.4\(5c\)|12\.0\(33\)S|12\.2\(20\)S14|12\.4\(11\)XJ4|12\.2\(25\)EWA11|12\.2\(33\)SXH2|12\.2\(18\)S13|12\.4\(16\)MR2|12\.4\(2\)XB6|12\.4\(9\)T4|12\.2\(40\)SG|12\.3\(14\)YX11|12\.3\(23\)BC1|12\.2\(25\)SW11|12\.2\(31\)SB5|12\.2\(37\)EY|12\.2\(37\)EX|12\.3\(8\)JK1|12\.2\(33\)SRB3|12\.2\(33\)SRB1|12\.3\(2\)XE5|12\.4\(7f\)|12\.4\(10c\)|12\.4\(9\)XG2|12\.4\(11\)T3|12\.3\(23\)|12\.4\(6\)XT1|12\.4\(15\)T4|12\.3\(7\)XR8|12\.2\(33\)SRC|12\.3\(7\)XR7|12\.0\(30\)SZ4|12\.2\(33\)SRA7|12\.2\(33\)SRA4|12\.3\(17c\)|12\.4\(12b\)|12\.2\(33\)SB|12\.3\(20a\)|12\.4\(8d\)|12\.2\(35\)SE4|12\.4\(2\)T6|12\.2\(44\)SE1|12\.3\(8\)YG6|12\.2\(25\)SG2|12\.4\(12\)MR2|12\.3\(21a\)BC2|12\.2\(31\)SGA5|12\.4\(3h\)|12\.0\(32\)SY4|12\.2\(31\)SGA6|12\.0\(32\)S9|12\.2\(31\)SGA3|12\.2\(31\)SGA2|12\.3\(14\)YX9|12\.3\(23\)BC|12\.4\(4\)XD10|12\.2\(25\)EWA13|12\.3\(2\)XC5|12\.2\(18\)SXF10a|12\.2\(37\)SE|12\.2\(29b\)SV|12\.2\(13\)ZH11|12\.2\(25\)S13|12\.2\(25\)S15|12\.2\(28\)SB7|12\.4\(15\)MD|12\.4\(4\)T8|12\.4\(18a\)|12\.2\(18\)IXD1|12\.3\(26\)|12\.2\(40\)EX1</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4077" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SX\d*|12\.0(\(\d+\))?SY\d*|12\.0(\(\d+\))?SZ\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?CZ\d*|12\.2(\(\d+\))?EU\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?EWA\d*|12\.2(\(\d+\))?EX\d*|12\.2(\(\d+\))?EY\d*|12\.2(\(\d+\))?EZ\d*|12\.2(\(\d+\))?FZ\d*|12\.2(\(\d+\))?IXA\d*|12\.2(\(\d+\))?IXB\d*|12\.2(\(\d+\))?IXC\d*|12\.2(\(\d+\))?IXD\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SB\d*|12\.2(\(\d+\))?SBC\d*|12\.2(\(\d+\))?SE\d*|12\.2(\(\d+\))?SEA\d*|12\.2(\(\d+\))?SEB\d*|12\.2(\(\d+\))?SEC\d*|12\.2(\(\d+\))?SED\d*|12\.2(\(\d+\))?SEE\d*|12\.2(\(\d+\))?SEG\d*|12\.2(\(\d+\))?SG\d*|12\.2(\(\d+\))?SGA\d*|12\.2(\(\d+\))?SM\d*|12\.2(\(\d+\))?SO\d*|12\.2(\(\d+\))?SRA\d*|12\.2(\(\d+\))?SRB\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SXE\d*|12\.2(\(\d+\))?SXF\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?UZ\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZP\d*|12\.2(\(\d+\))?ZU\d*|12\.2(\(\d+\))?ZY\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?JK\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?TPC\d*|12\.3(\(\d+\))?VA\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YM\d*|12\.3(\(\d+\))?YQ\d*|12\.3(\(\d+\))?YS\d*|12\.3(\(\d+\))?YT\d*|12\.3(\(\d+\))?YU\d*|12\.3(\(\d+\))?YX\d*|12\.3(\(\d+\))?YZ\d*|12\.4(\(\d+\))?\d*|12\.4(\(\d+\))?MD\d*|12\.4(\(\d+\))?MR\d*|12\.4(\(\d+\))?SW\d*|12\.4(\(\d+\))?T\d*|12\.4(\(\d+\))?XA\d*|12\.4(\(\d+\))?XB\d*|12\.4(\(\d+\))?XC\d*|12\.4(\(\d+\))?XD\d*|12\.4(\(\d+\))?XE\d*|12\.4(\(\d+\))?XF\d*|12\.4(\(\d+\))?XG\d*|12\.4(\(\d+\))?XJ\d*|12\.4(\(\d+\))?XK\d*|12\.4(\(\d+\))?XT\d*</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:3624" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">bgp log-neighbor-changes</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:4032" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(17d\)SXB5|12\.3\(4\)XQ1|12\.2\(15\)JK2|12\.3\(7\)XS2|12\.0\(29\)S|12\.3\(8\)XX1|12\.3\(8\)T5|12\.2\(20\)S7|12\.2\(15\)ZK6|12\.3\(4\)XD4|12\.3\(8\)YA1|12\.3\(8\)XU4|12\.2\(27\)|12\.3\(2\)XE1|12\.2\(4\)YA8|12\.3\(11\)T|12\.3\(7\)T7|12\.0\(27\)S4|12\.2\(18\)EW2|12\.3\(9c\)|12\.2\(14\)S13|12\.3\(2\)XC3|12\.0\(28\)W5\(31\)|12\.3\(4\)T11|12\.1\(26\)|12\.2\(14\)SU2|12\.2\(18\)SXD2|12\.2\(25\)EW|12\.0\(26\)S2d|12\.1\(23\)E2|12\.3\(5a\)B3|12\.0\(25\)S5|12\.3\(10a\)|12\.3\(7\)XI3|12\.3\(6d\)|12\.0\(26\)S5|12\.1\(26\)E|12\.2\(25\)SW|12\.0\(27\)S2d|12\.2\(20\)SE3|12\.0\(27\)SV4|12\.1\(22\)EA2|12\.0\(28b\)|12\.2\(18\)S8|12\.2\(25\)S|12\.0\(28\)S1|12\.0\(1\)T|12\.3\(12\)|12\.1\(22\)E3|12\.2\(15\)T15|12\.3\(9a\)BC1|12\.2\(2\)YC|12\.1\(14\)AX3</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:3856" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">snmp-server enable traps bgp</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3558" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?DA\d*|12\.0(\(\d+\))?DB\d*|12\.0(\(\d+\))?DC\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SC\d*|12\.0(\(\d+\))?SP\d*|12\.0(\(\d+\))?ST\d*|12\.O(\(\d+\))?SV\d*|12\.0(\(\d+\))?SX\d*|12\.0(\(\d+\))?SY\d*|12\.0(\(\d+\))?SZ\d*|12\.0(\(\d+\))?W5\d*|12\.0(\(\d+\))?WC\d*|12\.0(\(\d+\))?WT\d*|12\.0(\(\d+\))?WX\d*|12\.0(\(\d+\))?XA\d*|12\.0(\(\d+\))?XB\d*|12\.0(\(\d+\))?XC\d*|12\.0(\(\d+\))?XD\d*|12\.0(\(\d+\))?XE\d*|12\.0(\(\d+\))?XF\d*|12\.0(\(\d+\))?XG\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XJ\d*|12\.0(\(\d+\))?XK\d*|12\.0(\(\d+\))?XL\d*|12\.0(\(\d+\))?XM\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XP\d*|12\.0(\(\d+\))?XQ\d*|12\.0(\(\d+\))?XR\d*|12\.0(\(\d+\))?XS\d*|12\.0(\(\d+\))?XT\d*|12\.0(\(\d+\))?XU\d*|12\.0(\(\d+\))?XV\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?AX\d*|12\.1(\(\d+\))?AY\d*|12\.1(\(\d+\))?AZ\d*|12\.1(\(\d+\))?DA\d*|12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EO\d*|12\.1(\(\d+\))?EV\d*|12\.1(\(\d+\))?EW\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EY\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XE\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YH\d*|12\.1(\(\d+\))?YI\d*|12\.1(\(\d+\))?YJ\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BX\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?CZ\d*|12\.2(\(\d+\))?DA\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?JK\d*|12\.2(\(\d+\))?MB\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?MX\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SE\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XF\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XS\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?XZ\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YK\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YO\d*|12\.2(\(\d+\))?YP\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YS\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZI\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZK\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZN\d*|12\.2(\(\d+\))?ZO\d*|12\.2(\(\d+\))?ZP\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XL\d*|12\.3(\(\d+\))?XN\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XV\d*|12\.3(\(\d+\))?XX\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YC\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YE\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YL\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3087" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3233" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0\(10\.1\)S|12\.0\(11\)S</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4130" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">10\.0(\(\d+\))?\w*\d*|10\.2(\(\d+\))?\w*\d*|10\.3(\(\d+\))?\w*\d*</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4124" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">mpls traffic-eng tunnels</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:4074" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">tag-switching ip</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:3984" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">mpls ip</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3996" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.3\(7\)XI|12\.3\(7\)T|12\.2\(10g\)|12\.3\(8\)YG|12\.2\(20\)EWA|12\.2\(20\)S4|12\.3\(8\)XY|12\.2\(15\)CZ|12\.3\(8\)XW|12\.3\(7\)XJ|12\.2\(18\)S|12\.2\(13e\)|12\.3\(2\)XE1|12\.3\(8\)YD|12\.3\(11\)T|12\.2\(19\)SW|12\.3\(7\)XL|12\.3\(7\)XI1|12\.3\(11\)YF|12\.2\(15\)T7|12\.3\(4\)XN|12\.2\(16f\)|12\.3\(2\)XC3|12\.3\(8\)YA|12\.3\(2\)T5|12\.3\(4\)XD|12\.3\(2\)XT|12\.2\(12\)DA6|12\.2\(13\)T14|12\.2\(4\)YA8|12\.3\(4\)XQ|12\.3\(5a\)B4|12\.3\(2\)XF|12\.2\(14\)SU|12\.3\(4\)YE|12\.2\(4\)B8|12\.3\(3f\)|12\.3\(4\)XH|12\.2\(18\)EW|12\.3\(7\)XM|12\.3\(4\)XK1|12\.2\(19b\)|12\.3\(9a\)BC|12\.3\(4\)XG1|12\.2\(2\)XB18|12\.2\(17d\)|12\.2\(15\)XR|12\.3\(8\)YH|12\.3\(2\)T|12\.3\(7\)XS|12\.3\(4\)T|12\.2\(17d\)SXB|12\.3\(7\)XR|12\.2\(23\)|12\.2\(15\)BC2|12\.3\(4\)T7|12\.3T|12\.2\(2\)B|12\.3\(5\)|12\.3\(8\)T|12\.3\(8\)XX|12\.2\(15\)JK|12\.2\(21a\)|12\.3\(8\)XU|12\.2\(4\)B7|12\.3\(5a\)B|12\.2\(15\)JA</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3414" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YH\d*|12\.1(\(\d+\))?YI\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BX\d*|12\.B(\(\d+\))?Y\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?CY\d*|12\.2(\(\d+\))?CZ\d*|12\.2(\(\d+\))?DA\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?EWA\d*|12\.2(\(\d+\))?JA\d*|12\.2(\(\d+\))?JK\d*|12\.2(\(\d+\))?MB\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?MX\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XF\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XR\d*|12\.2(\(\d+\))?XS\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?XZ\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YO\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YS\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZI\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZN\d*|12\.2(\(\d+\))?ZO\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XL\d*|12\.3(\(\d+\))?XM\d*|12\.3(\(\d+\))?XN\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XT\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XX\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YE\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3840" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1\(5\)XS2|12\.1\(5\)XU1|12\.2\(1\)XD1|12\.1\(3\)XP4|12\.1DC|12\.0\(16\)SC|12\.1\(4\)XM4|12\.1\(6\)EZ|12\.1\(6\)EY|12\.0\(5\.4\)WC1|12\.1\(9\)AA|12\.2\(1b\)|12\.1\(7\)DA2|12\.2\(1c\)|12\.1\(5\)XG5|12\.0\(18\)|12\.1\(5\)XZ4|12\.2DD|12\.0\(18\)W5\(22\)|12\.1\(5\)XV3|12\.2\(2\)XA|12\.2\(2\)XB|12\.0\(4\)XM1|12\.1\(5\)YF2|12\.2\(3\)|12\.2\(1\)XQ|12\.1\(5\)XR2|12\.1\(2\)XF4|12\.1\(3\)XT3|12\.2\(1\)XH|12\.2\(1\.1\)|12\.0W|12\.2\(1\)XE|12\.1\(8a\)E|12\.1\(5\)YC1|12\.0\(18\)ST|12\.1\(5\)YD2|12\.2\(2\.2\)T|12\.0\(18\)S|12\.0\(18\)W5\(22a\)|12\.1\(6\)EZ1|12\.1\(5\)XY6|12\.1\(5\)DB2|12\.1\(9\)|12\.1\(5\)YB4|12\.1\(6\.5\)EC3</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3973" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.1(\(\d+\))?\w*\d*|11\.2(\(\d+\))?\w*\d*|11\.3(\(\d+\))?\d*|11\.3(\(\d+\))?AA\d*|11\.3(\(\d+\))?DA\d*|11\.3(\(\d+\))?DB\d*|11\.3(\(\d+\))?HA\d*|11\.3(\(\d+\))?MA\d*|11\.3(\(\d+\))?NA\d*|11\.3(\(\d+\))?T\d*|11\.3(\(\d+\))?XA\d*|11\.3(\(\d+\))?WA4\d*|12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?DA\d*|12\.0(\(\d+\))?DB\d*|12\.0(\(\d+\))?DC\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SC\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?T\d*|12\.0(10)W5(18g)|12\.0(14)W5(20)|12\.0(\(\d+\))?WC\d*|12\.0(\(\d+\))?WT\d*|12\.0(\(\d+\))?XA\d*|12\.0(\(\d+\))?XB\d*|12\.0(\(\d+\))?XC\d*|12\.0(\(\d+\))?XD\d*|12\.0(\(\d+\))?XE\d*|12\.0(\(\d+\))?XF\d*|12\.0(\(\d+\))?XG\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XJ\d*|12\.0(\(\d+\))?(5)XK\d*|12\.0(\(\d+\))?(7)XK\d*|12\.0(\(\d+\))?XL\d*|12\.0(\(\d+\))?XM\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XP\d*|12\.0(\(\d+\))?XQ\d*|12\.0(\(\d+\))?XR\d*|12\.0(\(\d+\))?XS\d*|12\.0(\(\d+\))?XU\d*|12\.0(\(\d+\))?XV\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?CX\d*|12\.1(\(\d+\))?DA\d*|12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EY\d*|12\.1(\(\d+\))?EZ\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XE\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XK\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XS\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XW\d*|12\.1(\(\d+\))?XX\d*|12\.1(\(\d+\))?XY\d*|12\.1(\(\d+\))?XZ\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YF\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XQ\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4009" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.4\(2\)T5|12\.2\(15\)MC2c|12\.3\(7\)T11|12\.4\(4\)T|12\.3\(14\)YX|12\.3\(14\)YG5|12\.4\(1b\)|12\.4\(3\)|12\.3\(14\)YQ8|12\.4\(4\)MR|12\.3\(14\)YM8|12\.3\(11\)T6|12\.3\(4\)T13|12\.4\(2\)XB|12\.3\(8\)T10</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3717" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?ZJ\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XX\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YM\d*|12\.3(\(\d+\))?YQ\d*|12\.3(\(\d+\))?YS\d*|12\.3(\(\d+\))?YT\d*|12\.3(\(\d+\))?YU\d*|12\.4(\(\d+\))?\d*|12\.4(\(\d+\))?MR\d*|12\.4(\(\d+\))?T\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3560" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0\(25\)SX11|12\.3\(4\)TPC11b|12\.2\(26\)SV1|12\.2\(15\)MC2h|12\.0\(30\)SZ|12\.3\(2\)JL|12\.0\(28\)S|12\.3\(14\)T|12\.3\(4\)T13|12\.3\(8\)YG2|12\.0\(27\)S3|12\.2\(25\)EWA5|12\.3\(11\)T|12\.1\(19\)EO6|12\.3\(8\)|12\.2\(18\)EW3|12\.2\(17d\)SXBa|12\.3\(8\)JA|12\.4\(4\)T|12\.3\(7\)XI8|12\.2\(23\)SV|12\.0\(5\)WC15|12\.2\(18\)SO7|12\.0\(30\)SX|12\.3\(2\)XA3|12\.1\(23\)E|12\.2\(28\)SB|12\.2\(37\)|12\.2\(25\)EW|12\.2\(25\)EX|12\.2\(25\)EY|12\.2\(25\)EWA|12\.3\(2\)JK2|12\.2\(37\)or|12\.0\(28\)W5\(32b\)|12\.2\(25\)SE|12\.3\(9a\)BC|12\.2\(34a\)|12\.1\(23\)EB|12\.3\(8\)T|12\.2\(25\)S|12\.1\(22\)EA8|12\.2\(17d\)SXB11a|12\.3\(11\)JX|12\.3\(8\)JK|12\.1\(20\)EO3|12\.3\(8\)T7|12\.2\(10\)DA5|12\.2\(25\)SW1|12\.2\(18\)SXD7a|12\.2\(20\)EWA4|12\.4\(1\)|12\.3\(12\)|12\.0\(27\)SY|12\.3\(8\)XY|12\.3\(7\)JX6|12\.2\(20\)EW4|12\.3\(8\)XW|12\.3\(2\)XA6|12\.2\(12\)DA10</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3966" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?DA\d*|12\.0(\(\d+\))?DB\d*|12\.0(\(\d+\))?DC\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SC\d*|12\.0(\(\d+\))?SL\d*|12\.0(\(\d+\))?SP\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?SX\d*|12\.0(\(\d+\))?SY\d*|12\.0(\(\d+\))?SZ\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?W\d*|12\.0(\(\d+\))?WC\d*|12\.0(\(\d+\))?WT\d*|12\.0(\(\d+\))?XA\d*|12\.0(\(\d+\))?XB\d*|12\.0(\(\d+\))?XC\d*|12\.0(\(\d+\))?XD\d*|12\.0(\(\d+\))?XE\d*|12\.0(\(\d+\))?XG\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XJ\d*|12\.0(\(\d+\))?XK\d*|12\.0(\(\d+\))?XL\d*|12\.0(\(\d+\))?XM\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XQ\d*|12\.0(\(\d+\))?XR\d*|12\.0(\(\d+\))?XS\d*|12\.0(\(\d+\))?XV\d*|12\.0(\(\d+\))?XW\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?AX\d*|12\.1(\(\d+\))?AY\d*|12\.1(\(\d+\))?AZ\d*|12\.1(\(\d+\))?CX\d*|12\.1(\(\d+\))?DA\d*|12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EB\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EO\d*|12\.1(\(\d+\))?EU\d*|12\.1(\(\d+\))?EV\d*|12\.1(\(\d+\))?EW\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EY\d*|12\.1(\(\d+\))?EZ\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XE\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XS\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XW\d*|12\.1(\(\d+\))?XX\d*|12\.1(\(\d+\))?XY\d*|12\.1(\(\d+\))?XZ\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YH\d*|12\.1(\(\d+\))?YI\d*|12\.1(\(\d+\))?YJ\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?CY\d*|12\.2(\(\d+\))?CZ\d*|12\.2(\(\d+\))?DA\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?EU\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?EWA\d*|12\.2(\(\d+\))?EX\d*|12\.2(\(\d+\))?JA\d*|12\.2(\(\d+\))?JK\d*|12\.2(\(\d+\))?MB\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SB\d*|12\.2(\(\d+\))?SE\d*|12\.2(\(\d+\))?SO\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?TPC\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XF\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XR\d*|12\.2(\(\d+\))?XS\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XV\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YK\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YP\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YS\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZN\d*|12\.2(\(\d+\))?ZP\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?JA\d*|12\.3(\(\d+\))?JK\d*|12\.3(\(\d+\))?JL\d*|12\.3(\(\d+\))?JX\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?TPC\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XQ\d*</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:3609" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">ip nhrp network-id</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:4093" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.4\(10\)|12\.3\(4\)TPC11b|12\.4\(3b\)|12\.2\(13\)ZH9|12\.4\(15\)T|12\.3\(14\)YX8|12\.3\(11\)YZ2|12\.3\(18a\)|12\.3\(22a\)|12\.4\(4\)MR|12\.4\(9\)MR|12\.3\(7\)XR7|12\.2\(37\)SG1|12\.3\(2\)XA6|12\.2\(31\)SG2|12\.2\(18\)SXF10|12\.4\(9\)T|12\.2\(25\)EWA10|12\.4\(1c\)|12\.4\(8\)|12\.2\(29b\)|12\.2\(20\)S14|12\.2\(29\)SM2|12\.2\(10\)DA8|12\.3\(17b\)BC8|12\.3\(11\)YK3|12\.2\(14\)S19|12\.4\(6\)T8|12\.3\(7\)XI10a|12\.2\(15\)MC2h|12\.2\(15\)MC2j|12\.3\(19a\)|12\.3\(14\)T5|12\.4\(6\)T|12\.3\(14\)YM5|12\.2\(28d\)|12\.4\(7\)|12\.3\(11\)YS2|12\.3\(17a\)BC|12\.4\(16\)|12\.4\(5c\)|12\.3\(21b\)|12\.2\(46a\)|12\.2\(29\)SV4|12\.3\(11\)T12|12\.2\(18\)S13|12\.3\(22\)|12\.4\(2\)XB6|12\.4\(12\)MR|12\.4\(9\)T5|12\.3\(17a\)|12\.2\(40\)SG|12\.3\(21\)BC|12\.2\(25\)SW11|12\.3\(2\)XE5|12\.4\(7f\)|12\.4\(10c\)|12\.4\(4\)T|12\.4\(11\)T3|12\.3\(23\)|12\.4\(15\)T1|12\.3\(8\)YG6|12\.4\(5\)|12\.2\(26c\)|12\.3\(7\)XR7|12\.2\(31\)SGA4|12\.4\(4\)T8|12\.3\(17c\)|12\.4\(11\)MR|12\.4\(6\)MR|12\.3\(20a\)|12\.4\(8d\)|12\.3\(20\)|12\.2\(31\)SB6|12\.4\(2\)T6|12\.4\(2\)T3|12\.2\(12\)DA12|12\.2\(46\)|12\.3\(8\)YG6|12\.2\(25\)SG2|12\.4\(12\)MR2|12\.4\(12\)MR1|12\.3\(21a\)BC3|12\.2\(8\)TPC10c|12\.4\(3h\)|12\.0\(32\)SY4|12\.3\(14\)YX9|12\.0\(32\)S8|12\.4\(12c\)|12\.2\(31\)SGA3|12\.3\(2\)XC5|12\.3\(21\)|12\.2\(27c\)|12\.4\(11\)T|12\.3\(19\)|12\.4\(12\)|12\.1\(27b\)E3|12\.3\(2\)JA3|12\.4\(13d\)|12\.2\(25\)S13|12\.2\(28\)SB9|12\.2\(18\)SXE4|12\.3\(14\)YM11|12\.3\(18\)|12\.4\(13\)</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3099" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?DC\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SC\d*|12\.0(\(\d+\))?SL\d*|12\.0(\(\d+\))?SP\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?SX\d*|12\.0(\(\d+\))?SY\d*|12\.0(\(\d+\))?SZ\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?XA\d*|12\.0(\(\d+\))?XC\d*|12\.0(\(\d+\))?XD\d*|12\.0(\(\d+\))?XE\d*|12\.0(\(\d+\))?XG\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XJ\d*|12\.0(\(\d+\))?XK\d*|12\.0(\(\d+\))?XL\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XQ\d*|12\.0(\(\d+\))?XR\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?CX\d*|12\.1(\(\d+\))?DA\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EU\d*|12\.1(\(\d+\))?EW\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EZ\d*|12\.1(\(\d+\))?GA\d*|12\.1(\(\d+\))?GB\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XS\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XW\d*|12\.1(\(\d+\))?XX\d*|12\.1(\(\d+\))?XY\d*|12\.1(\(\d+\))?XZ\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YI\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?CY\d*|12\.2(\(\d+\))?DA\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?EU\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?EWA\d*|12\.2(\(\d+\))?MB\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SB\d*|12\.2(\(\d+\))?SBC\d*|12\.2(\(\d+\))?SG\d*|12\.2(\(\d+\))?SGA\d*|12\.2(\(\d+\))?SM\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SXE\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?TPC\d*|12\.2(\(\d+\))?UZ\d*|12\.2(\(\d+\))?VZ\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XF\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XR\d*|12\.2(\(\d+\))?XS\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XV\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YP\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZR\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?TPC\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YM\d*|12\.3(\(\d+\))?YQ\d*|12\.3(\(\d+\))?YS\d*|12\.3(\(\d+\))?YT\d*|12\.3(\(\d+\))?YU\d*|12\.3(\(\d+\))?YX\d*|12\.3(\(\d+\))?YZ\d*|12\.4(\(\d+\))?\d*|12\.4(\(\d+\))?MR\d*|12\.4(\(\d+\))?T\d*|12\.4(\(\d+\))?XB\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4045" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?\w*\d*|12\.1(\(\d+\))?\w*\d*|12\.2(\(\d+\))?\w*\d*|12\.3(\(\d+\))?\w*\d*</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:3309" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">l2-filter block-arp</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:4083" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.3\(7\)JA2</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3824" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1\(6\)EA1a|12\.2\(1\)XD3|12\.2\(2\)XQ2|12\.2\(2\)XH2|12\.2\(2\)XJ2|12\.0\(5\)WC3|12\.1\(3\)XG6|12\.0\(16\)W5\(21b\)|12\.2\(2\)DD1|12\.1\(9\)EC|12\.2\(2\)XB2|12\.1\(5\)XM6|11\.2\(13\)|12\.1\(08a\)E05|11\.2\(12\)P|12\.1\(5\)YE4|12\.0\(20\)W5\(24\)|12\.2\(4\.2\)|12\.1\(11\)E|12\.1\(11\)|12\.2DA|12\.1\(5\)YC2|12\.1\(10\)AA|12\.1\(11\)E|12\.2\(2\)XB|12\.0\(19\.6\)|12\.1\(6\)EZ4|12\.2\(2\)XA4|12\.2\(1\)XE2|12\.1\(2\)XF5|12\.2\(2\)XC1|12\.2\(2\)XK5|12\.2\(7\)T|12\.2\(2\)XG1|12\.0\(20\)ST|12\.0\(20\)SP|12\.1\(10\.3\)|12\.2\(2\)B|12\.0\(18\)W5\(22a\)|12\.1\(6\)EA2|12\.0\(21\)S|12\.1\(5\)YF3|11\.3\(3\)|12\.2\(2\)T|12\.1\(8\.5\)EC|12\.1\(5\)YB5|12\.2\(5\)</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3313" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.1(\(\d+\))?\w*\d*|11\.0(\(\d+\))?\w*\d*|11\.2(\(\d+\))?\d*|11\.2(\(\d+\))?P\d*|11\.3(\(\d+\))?\d*|11\.3(\(\d+\))?T\d*|12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?DA\d*|12\.0(\(\d+\))?DB\d*|12\.0(\(\d+\))?DC\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SC\d*|12\.0(\(\d+\))?SL\d*|12\.0(\(\d+\))?SP\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?W5\d*|12\.0(\(\d+\))?WC\d*|12\.0(\(\d+\))?XA\d*|12\.0(\(\d+\))?XB\d*|12\.0(\(\d+\))?XC\d*|12\.0(\(\d+\))?XD\d*|12\.0(\(\d+\))?XE\d*|12\.0(\(\d+\))?XF\d*|12\.0(\(\d+\))?XG\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XJ\d*|12\.0(\(\d+\))?XK\d*|12\.0(\(\d+\))?XL\d*|12\.0(\(\d+\))?XM\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XP\d*|12\.0(\(\d+\))?XQ\d*|12\.0(\(\d+\))?XR\d*|12\.0(\(\d+\))?XS\d*|12\.0(\(\d+\))?XU\d*|12\.0(\(\d+\))?XV\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?DA\d*|12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EY\d*|12\.1(\(\d+\))?EZ\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XE\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XK\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XS\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XW\d*|12\.1(\(\d+\))?XX\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YH\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XQ\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3387" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SC\d*|12\.0(\(\d+\))?SL\d*|12\.0(\(\d+\))?SP\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?SX\d*|12\.0(\(\d+\))?SY\d*|12\.0(\(\d+\))?SZ\d*|12\.0(\(\d+\))?XK\d*|12\.1(\(\d+\))?AX\d*|12\.1(\(\d+\))?AY\d*|12\.1(\(\d+\))?AZ\d*|12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EB\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EU\d*|12\.1(\(\d+\))?EV\d*|12\.1(\(\d+\))?EW\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EY\d*|12\.1(\(\d+\))?EZ\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XE\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YH\d*|12\.1(\(\d+\))?YI\d*|12\.1(\(\d+\))?YJ\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?CY\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?EU\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?EWA\d*|12\.2(\(\d+\))?EX\d*|12\.2(\(\d+\))?EY\d*|12\.2(\(\d+\))?EZ\d*|12\.2(\(\d+\))?MB\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SE\d*|12\.2(\(\d+\))?SEA\d*|12\.2(\(\d+\))?SEB\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XF\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XR\d*|12\.2(\(\d+\))?XS\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YK\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YO\d*|12\.2(\(\d+\))?YP\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZC\d*|12\.3(\(\d+\))?JA\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XL\d*|12\.3(\(\d+\))?XM\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XX\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3198" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.3\(11\)YF|12\.2\(17d\)SXB1|12\.3\(11\)YJ|12\.3\(11\)YK|12\.2\(24\)SV|12\.2\(20\)EWA|12\.2\(20\)S7|12\.0\(28\)S2|12\.3\(4\)JA|12\.3\(4\)T11|12\.3\(7\)T7|12\.3\(8\)YD|12\.3\(11\)T|12\.0\(27\)S4|12\.2\(18\)EW2|12\.3\(8\)YH|12\.3\(8\)YA|12\.3\(4\)XQ1|12\.3\(8\)YG|12\.0\(30\)SX|12\.0\(30\)S|12\.2\(25\)EW|12\.2\(25\)EY|12\.2\(25\)EZ|12\.3\(14\)T|12\.3BC|12\.2\(20\)SE4|12\.2\(14\)S13|12\.3\(7\)XM|12\.3\(11\)T3|12\.2\(25\)SE|12\.1\(23\)E|12\.2\(20\)EU|12\.1\(23\)EB|12\.3\(7\)XI3|12\.3\(11\)XL|12\.0\(26\)S5|12\.2\(25\)S|12\.2SW|12\.2\(26\)|12\.3\(7\)XS|12\.3\(7\)XR|12\.1\(22\)EA1|12\.1\(4\)AY4|12\.2\(18\)S7|12\.2\(18\)SXD|12\.2\(25\)SEA|12\.2\(25\)SEB|12\.3\(8\)T|12\.3\(8\)XX|12\.3\(8\)XY|12\.3\(8\)XU|12\.3\(8\)XW</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3055" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(17b\)SXA|12\.2\(17d\)SXB|12\.2\(14\)SY3</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3197" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SY\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4017" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?E\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?T\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?T\d*|11\.2(\(\d+\))?\d*|11\.2(\(\d+\))?P\d*|11\.2(\(\d+\))?SA\d*|11\.3(\(\d+\))?\d*|12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?DC\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SL\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?SX\d*|12\.0(\(\d+\))?SZ\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?W5\d*|12\.0(\(\d+\))?WC\d*|12\.0(\(\d+\))?WT\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AX\d*|12\.1(\(\d+\))?DA\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EB\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EO\d*|12\.1(\(\d+\))?EU\d*|12\.1(\(\d+\))?EW\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?T\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BX\d*|12\.2(\(\d+\))?DA\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?JA\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SE\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZP\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XK\d*|12\.0(1)XB|12\.2(8)YD|12\.1(5)YB|12\.1(5)YC|12\.2(8)YJ|12\.1(5)YA|12\.2(8)YL|12\.2(8)YM|12\.1(5)YD|12\.2(8)YW|12\.2(8)YY|12\.1(13)AY|12\.1(5)XR|12\.3(4)XN|12\.1(10)EY|12\.1(2)XF|12\.2(11)ZI|12\.3(4)XQ|12\.1(2a)XH|12\.3(7)XI|12\.0(7)XR|12\.3(7)XJ|12\.1(5)XM|12\.3(7)XL|12\.0(7)XV|12\.1(3)XT|12\.1(3)XQ|12\.1(3)XP|12\.1(3)XL|12\.0(7)XE|12\.1(3)XG|12\.0(7)XK|12\.1(5)XU|12\.1(5)XV|12\.2(4)YH|12\.2(9)YE|12\.2(4)YF|12\.2(4)YG|12\.2(9)YO|12\.2(4)YA|12\.2(4)YB|12\.1(3a)XI|12\.3(9)XM|12\.3(1a)BW|12\.0(4)XI|12\.0(4)XH|12\.2(8)YN|12\.0(4)XJ|12\.0(4)XM|12\.1(12c)|12\.1(5)YI2|12\.2(2)XU|12\.2(2)XT|12\.2(2)XQ|12\.2(2)XN|12\.2(2)XH|12\.2(2)XK|12\.2(2)XJ|12\.2(2)XG|12\.2(2)XA|12\.2(2)XC|12\.2(2)XB|12\.1(1)XB|12\.2(1)XS|12\.2(1)XD|12\.2(1)XE|12\.0(3)XG|12\.2(1)XF1|12\.2(4)BY|12\.1(5)YH2|12\.2(4)BW|12\.1(5)DB|12\.0(5\.1)XP|12\.0(5)XN|12\.0(5)XU|12\.0(5)XS|12\.0(5)XQ|12\.1(10)AA|12\.3(2)XA|12\.3(2)XF|12\.3(2)XE|12\.2(15)ZN|12\.2(13)ZH|12\.2(15)ZL|12\.2(15)ZK|12\.2(11)CY|12\.2(11)CX|12\.1(11)YJ|12\.2(15)BZ|12\.2(2)XI2|12\.2(2)BY|12\.1(1)XE|12\.1(1)XD|12\.1(1)XA|12\.2(2)YK|12\.1(1)XC|12\.1(5)YF2|12\.2(2)YC|12\.2(1)DX|12\.2(13)ZC|12\.2(8)BY|12\.2(4)XM|12\.2(4)XL|12\.1(5)YE5|12\.0(4)XL|12\.2(4)XW|12\.2(8)ZB|12\.2(11)YS|12\.2(11)YR|12\.2(11)YQ|12\.2(11)YP|12\.2(11)YV|12\.2(11)YU|12\.2(11)YT|12\.2(11)YZ|12\.2(11)YX|12\.2(13)ZE|12\.2(13)ZF|12\.2(13)ZG|12\.2(2)DX|12\.1(3)XJ</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3162" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0\(23\)S6|12\.1\(22c\)|12\.3\(7\)T|12\.2\(20\)S1|12\.2\(20\)S3|12\.2\(11\)T|12\.3|12\.1|12\.1\(20\)E2|12\.2\(8\)YY|12\.2\(RLS3\)S|12\.3\(6\)|12\.3\(4\)XK|12\.0\(16\)S11|12\.2\(13\)T11|12\.2\(16f\)|12\.3\(4\)XG|12\.2DD|12\.2\(12i\)|12\.1\(5\)T17|12\.1\(5\)T18|12\.2\(14\)SY3|12\.0T|12\.0\(13\)WT|12\.1DC|12\.2\(21\)SW|12\.2\(23\)|12\.1\(20\)EB|12\.2\(13\)JA4|12\.1\(20\)EC|12\.0\(27\)S|12\.1\(14\)E|12\.1\(20\)EO|12\.2\(13\)ZP3|12\.1\(20\)EU|12\.1\(22\)E1|12\.1\(4c\)|12\.2\(8\)T|12\.3\(5c\)|12\.2\(15\)BC1C|12\.3\(4\)T|12\.2\(14\)SZ6|12\.2\(13e\)|12\.3\(6a\)|12\.3\(5a\)B|12\.2\(16\)BX3|12\.1\(14\)AX|12\.3\(2\)T4|12\.2\(19b\)|12\.2\(18\)SE|12\.2\(14\)SZ|12\.2\(13\)T|12\.2\(13\)T12|12\.2\(14\)SY|12\.3\(3e\)|12\.2\(15\)B|12\.3\(4\)XH|12\.0SL|11\.2\(8\.12\)SA6|12\.3\(5b\)|12\.1\(20a\)|12\.2\(17d\)|12\.0ST|12\.2\(14\)ZA6|12\.2\(14\)S7|12\.0SZ|12\.2\(RLS4\)S|12\.0\(25\)W5\(27b\)|12\.2\(17d\)SXB|12\.0\(5\)WC|12\.2\(21a\)|12\.0\(25\)S3|12\.2\(15\)T12|12\.3\(3\)B1|12\.2\(15\)T11|12\.2\(17d\)SXB1|12\.2\(13\)ZD1|12\.2\(23a\)|12\.0\(28\)|12\.3\(2\)T|11\.3\(11b\)T4|12\.2\(17b\)SXA2|12\.1\(19\)EO2|12\.3\(7\)T1|12\.1\(11b\)E14|12\.2\(13\)BC1C|12\.3\(1\)T|12\.2\(21b\)|12\.2\(11\)T11|12\.0\(24\)S5|12\.2\(18\)EW|12\.1\(13\)E14|11\.2\(26\)P6|12\.2\(15\)ZJ5|12\.2\(15\)BC|12\.0\(26\)S2|12\.0\(25\)SX4|12\.2\(22\)S|12\.0\(1\)XB|12\.3\(4\)T6|12\.3T|12\.3\(4\)T3|12\.2\(17a\)SX4|12\.2\(4\)B1|12\.2\(2\)YC|12\.2\(17a\)SX2|12\.2\(15\)JA|12\.1\(8b\)E18|12\.3\(2\)XB2|12\.2\(10g\)|12\.1\(20\)EW2|12\.3\(4\)XD1|12\.2\(18\)S|11\.3\(11e\)|12\.1\(19\)EA1b|12\.1\(19\)EA1c|12\.2\(8\)BZ|12\.3\(2\)XC2|11\.2\(26f\)|12\.2\(12\)DA6|12\.1\(14\)E10|12\.2\(15\)T|12\.3\(5a\)B1|12\.0\(5\)WC9a|12\.2\(16\)BX|12\.2\(8\)ZB|12\.1\(19\)E6|12\.1\(19\)E7|12\.0\(21\)S8|12\.2\(11\)JA3|12\.2\(4\)BC1C|12\.0\(28\)W5\(30\)|12\.2\(13\)ZC|12\.2\(18\)S3|12\.2\(15\)MC1B|12\.2\(15\)ZJ4</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4106" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?\w*\d*|12\.1(\(\d+\))?\w*\d*|12\.2(\(\d+\))?\w*\d*</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4221" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">dlsw local-peer</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3158" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SZ\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?WC\d*|12\.0(\(\d+\))?XA\d*|12\.0(\(\d+\))?XC\d*|12\.0(\(\d+\))?XD\d*|12\.0(\(\d+\))?XE\d*|12\.0(\(\d+\))?XG\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XJ\d*|12\.0(\(\d+\))?XK\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XQ\d*|12\.0(\(\d+\))?XR\d*|12\.0(\(\d+\))?XT\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EZ\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XE\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XS\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XW\d*|12\.1(\(\d+\))?XX\d*|12\.1(\(\d+\))?XY\d*|12\.1(\(\d+\))?XZ\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YI\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?IXA\d*|12\.2(\(\d+\))?IXB\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SB\d*|12\.2(\(\d+\))?SBC\d*|12\.2(\(\d+\))?SRA\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SXE\d*|12\.2(\(\d+\))?SXF\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?TPC\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XV\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZN\d*|12\.2(\(\d+\))?ZP\d*|12\.2(\(\d+\))?ZU\d*|12\.2(\(\d+\))?ZV\d*|12\.2(\(\d+\))?ZW\d*|12\.2(\(\d+\))?ZX\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XX\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YM\d*|12\.3(\(\d+\))?YQ\d*|12\.3(\(\d+\))?YT\d*|12\.3(\(\d+\))?YU\d*|12\.3(\(\d+\))?YX\d*|12\.3(\(\d+\))?YZ\d*|12\.4(\(\d+\))?\d*|12\.4(\(\d+\))?T\d*|12\.4(\(\d+\))?XA\d*|12\.4(\(\d+\))?XB\d*|12\.4(\(\d+\))?XC\d*|12\.4(\(\d+\))?XD\d*|12\.4(\(\d+\))?XE\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4057" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(13\)ZH6|12\.4\(4\)XC6|12\.2\(30\)S|12\.0\(4\)XJ5|12\.4\(6\)T6|12\.2\(46\)|12\.3\(8\)XX2|12\.1\(1\)XE1|12\.2\(18\)SXF8|12\.2\(18\)IXC|12\.4\(7d\)|12\.3\(2\)XE2|12\.2\(25\)SW9|12\.0\(23\)S|12\.2\(46\)|12\.4\(8c\)|12\.3\(2\)XA5|12\.4\(11\)T1|12\.2\(4\)YA10|12\.2\(28\)ZX|12\.0\(5\)WC17|12\.3\(21\)|12\.4\(4\)T7|12\.2\(11\)YV1|12\.1\(5\)XV1|12\.1\(26\)E8|12\.4\(12\)|12\.1\(27b\)E2|12\.3\(7\)XI8a|12\.2\(2\)XB17|12\.2\(33\)SRB|12\.2\(28a\)ZV1|12\.2\(18\)SXE6b|12\.2\(33\)SRA2|12\.2\(20\)S7|12\.2\(28\)SB6|12\.3\(8\)YG5|12\.4\(9\)T3|12\.2\(4\)BC1|12\.0\(18\)S|12\.4\(10a\)|12\.2\(8\)YJ1|12\.2\(26\)SV|12\.3\(2\)XC3|12\.2\(31\)SB2|12\.1\(3\)XT2|12\.4\(4\)XD5</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4111" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.1(\(\d+\))?CA\d*|11\.1(\(\d+\))?CC\d*|11\.2(\(\d+\))?\d*|11\.2(\(\d+\))?BC\d*|11\.2(\(\d+\))?P\d*|11\.3(\(\d+\))?DA\d*|12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?DA\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SC\d*|12\.0(\(\d+\))?SL\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?W5\d*|12\.0(\(\d+\))?WC\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?DA\d*|12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XZ\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XE\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4043" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0\(7\)W5\(15c\)|12\.0\(8\)DA5|12\.0\(9\)ST1|11\.2\(23\)|12\.1\(1\)XA3|12\.1\(2\.1\)|12\.0\(10\)S1|12\.0\(5\.4\)WC1|12\.0\(5\)W5\(13d\)|11\.1\(34\)CA|11\.1\(34\)CC|11\.2\(22\.2\)|12\.0\(9\)W5\(17a\)|12\.0\(11\)SC|12\.0\(10\.6\)S|12\.0\(11a\)|12\.1\(2\)E|12\.1\(2\)EC|11\.1\(33\.2\)CA|11\.2\(22a\)P|12\.0\(10\.6\)SC|11\.1\(33\)CC1|12\.1\(2\.0\.1\)T2|12\.1\(2\)AA|12\.1\(2\)T|11\.1\(33\.1\)CC|12\.0\(11\.1\)|12\.0\(7\)W5\(15d\)|12\.1\(3\)|12\.1\(1\)AA2|12\.1\(1b\)|12\.1\(1\)DA|12\.0\(12\)|12\.1\(1\)DC|11\.2\(22\.1\)BC|11\.3\(1\)DA9|11\.2\(23\)P|11\.2\(22\.2\)P|12\.1\(1\)E2|12\.0\(11\)S|12\.0\(10\)SL|12\.0\(9\)SL1|12\.1\(1\)XE|12\.1\(1\)XD|12\.1\(1\)DB|12\.0\(10\)ST|11\.2\(22a\)|11\.2\(22a\)BC</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4150" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*|12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EY\d*|12\.1(\(\d+\))?EZ\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XE\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XS\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XY\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YF\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XQ\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3176" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1\(5\)XS2|12\.1\(5\)XU1|12\.2\(1\)XD1|12\.1\(4\)XM4|12\.1\(6\)EY|12\.2\(1b\)|12\.1\(5\)XV3|12\.2\(2\)XA|12\.2\(2\)XB|12\.1\(5\)YF2|12\.2\(3\)|12\.2\(1\)XQ|12\.1\(5\)XR2|12\.1\(2\)XF4|12\.2\(1\)XH|12\.2\(1\.1\)|12\.2\(1\)XE|12\.1\(8a\)E|12\.1\(5\)YC1|12\.1\(3\)XP4|12\.1\(5\)YD2|12\.2\(2\.2\)T|12\.1\(6\)EZ2|12\.0\(20\)S|12\.1\(5\)XY6|12\.1\(6\.5\)EC3|12\.1\(5\)YB4|12\.1\(3\)XT3</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4121" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">router eigrp</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3155" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.0(\(\d+\))?\w*\d*|11\.1(\(\d+\))?\w*\d*|11\.2(\(\d+\))?\w*\d*|11\.3(\(\d+\))?\w*\d*|11\.4(\(\d+\))?\w*\d*|12\.0(\(\d+\))?\w*\d*|12\.1(\(\d+\))?\w*\d*|12\.2(\(\d+\))?\w*\d*|12\.3(\(\d+\))?\w*\d*|12\.4(\(\d+\))?\w*\d*</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4229" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">cns config \S+ \S+ encrypt</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3109" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?WC\d*|12\.0(\(\d+\))?XE\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XK\d*|12\.0(\(\d+\))?XL\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XQ\d*|12\.0(\(\d+\))?XR\d*|12\.0(\(\d+\))?XV\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AY\d*|12\.1(\(\d+\))?CX\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EB\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EW\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EY\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YI\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?CY\d*|12\.2(\(\d+\))?CZ\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?EWA\d*|12\.2(\(\d+\))?EX\d*|12\.2(\(\d+\))?EY\d*|12\.2(\(\d+\))?EZ\d*|12\.2(\(\d+\))?FX\d*|12\.2(\(\d+\))?FY\d*|12\.2(\(\d+\))?FZ\d*|12\.2(\(\d+\))?JA\d*|12\.2(\(\d+\))?JK\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SB\d*|12\.2(\(\d+\))?SBC\d*|12\.2(\(\d+\))?SE\d*|12\.2(\(\d+\))?SEA\d*|12\.2(\(\d+\))?SEB\d*|12\.2(\(\d+\))?SEC\d*|12\.2(\(\d+\))?SED\d*|12\.2(\(\d+\))?SEE\d*|12\.2(\(\d+\))?SEF\d*|12\.2(\(\d+\))?SEG\d*|12\.2(\(\d+\))?SG\d*|12\.2(\(\d+\))?SGA\d*|12\.2(\(\d+\))?SRA\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SXE\d*|12\.2(\(\d+\))?SXF\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?TPC\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XF\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XR\d*|12\.2(\(\d+\))?XS\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XV\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZN\d*|12\.2(\(\d+\))?ZU\d*|12\.2(\(\d+\))?ZV\d*|12\.2(\(\d+\))?ZW\d*|12\.2(\(\d+\))?ZX\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?JA\d*|12\.3(\(\d+\))?JEA\d*|12\.3(\(\d+\))?JK\d*|12\.3(\(\d+\))?JX\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?TPC\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XX\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YQ\d*|12\.3(\(\d+\))?YS\d*|12\.3(\(\d+\))?YT\d*|12\.3(\(\d+\))?YU\d*|12\.3(\(\d+\))?YX\d*|12\.3(\(\d+\))?YZ\d*|12\.4(\(\d+\))?\d*|12\.4(\(\d+\))?T\d*|12\.4(\(\d+\))?XA\d*|12\.4(\(\d+\))?XB\d*|12\.4(\(\d+\))?XC\d*|12\.4(\(\d+\))?XD\d*|12\.4(\(\d+\))?XE\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4018" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.4\(10\)|12\.4\(7d\)|12\.4\(6\)T7|12\.2\(46\)|12\.2\(18\)SXF8|12\.2\(25\)EWA9|12\.2\(25\)SEE3|12\.2\(25\)SEG2|12\.3\(8\)XX2d|11-June-2007|12\.4\(8c\)|12\.3\(11\)JA|12\.4\(4\)XC4|12\.0\(5\)WC17|12\.4\(3h\)|12\.2\(28\)SB4b|12\.3\(21a\)|12\.4\(11\)T|12\.1\(26\)E8|12\.1\(27b\)E2|12\.3\(8\)JEA|12\.2\(18\)S0a|12\.2\(35\)SE|12\.2\(31\)SGA2|12\.2\(40a\)|12\.2\(25\)S12|12\.2\(18\)SXE6a|12\.2\(33\)SRA2|12\.1\(22\)EA9|12\.2\(29\)SV3|12\.4\(4\)T6|12\.3\(17b\)BC5|12\.1\(26\)EB2|12\.3\(22\)|12\.4\(9\)T3|12\.2\(14\)S13a|12\.2\(25\)SW9|12\.2\(8\)TPC10b|12\.2\(20\)S9a|12\.2\(37\)SG|12\.3\(21\)BC|12\.2\(31\)SB2|12\.2\(28\)SV2|12\.4\(4\)XD5</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3526" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?ST\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4019" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0\(16\.6\)S2|12\.0\(17\.3\)S|12\.0\(17\)S|12\.0\(17\.3\)ST|12\.0\(18\)ST</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4189" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">aaa authentication login \S+ group radius local none</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:4027" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">aaa authentication ppp \S+ group radius local none</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:4215" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">aaa authentication login \S+ group radius none</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3274" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BX\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?CY\d*|12\.2(\(\d+\))?CZ\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?EWA\d*|12\.2(\(\d+\))?EY\d*|12\.2(\(\d+\))?EZ\d*|12\.2(\(\d+\))?JA\d*|12\.2(\(\d+\))?JK\d*|12\.2(\(\d+\))?MB\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?MX\d*|12\.2(\(\d+\))?SE\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SXE\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XF\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XR\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YP\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZN\d*|12\.2(\(\d+\))?ZO\d*|12\.2(\(\d+\))?ZP\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?JA\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XL\d*|12\.3(\(\d+\))?XM\d*|12\.3(\(\d+\))?XN\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XT\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XX\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YB\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YL\d*|12\.3(\(\d+\))?YN\d*|12\.3(\(\d+\))?YR\d*|12\.3(\(\d+\))?YS\d*|12\.3(\(\d+\))?YQ\d*|12\.4(\(\d+\))?\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3958" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.3\(7\)JA|12\.3\(11\)YF|12\.3\(11\)YJ|12\.3\(11\)YK|12\.3\(8\)T4|12\.3\(11\)YL|12\.3|12\.2\(25\)EWA2|12\.2\(18\)SXE2|12\.2\(18\)SXD5|12\.3\(11\)T|12\.3\(14\)YQ|12\.3\(8\)YI|12\.3\(11\)|12\.4\(1\)|12\.3\(8\)YG|12\.3\(8\)YD|12\.2\(25\)EY2|12\.2\(25\)SEC|12\.3\(8\)XY5|12\.3\(11\)XL|12\.3\(7\)T11|12\.2\(25\)SEB2|12\.3\(8\)YH|12\.2SW|12\.3\(7\)XI6|12\.3\(11\)YR|12\.3\(10\)|12\.3\(11\)YS|12\.3\(14\)T|12\.3\(13\)BC|12\.3\(11\)YN</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4235" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">aaa authentication ppp \S+ group radius none</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:4008" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0\(16\)S1|12\.0\(16\.5\)S|12\.0\(17\)S|12\.0\(13\.6\)S2|12\.0\(14\.1\)S|12\.0\(14\.1\)S|12\.0\(16\.6\)S|12\.0\(15\.6\)ST3|12\.0\(16\.5\)ST|12\.0\(16\)ST|12\.0\(14\.3\)ST</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:3707" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">no ip unreachables</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3090" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?ST\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4037" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(14\)ZA8| 12\.2\(14\)SY4|12\.1\(13\)E14|12\.1.\(19\)E7|12\.1\(20\)E3|12\.1\(22\)E</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:3998" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">^\s*ip http secure-server</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3084" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?SY\d*|12\.1(\(\d+\))?E\d*</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:3581" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">^\s*no ip http secure-server</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3063" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.1(\(\d+\))?CC\d*|12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?W5\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XM\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?T\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3211" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0\(20\.4\)W5\(24\.7\)|11\.1\(36\)CC3|12\.2\(2\.5\)|12\.1\(9\.5\)EC|12\.0\(18\.3\)S|12\.1\(9\.2\)|12\.0\(17\)ST4|12\.2\(3\)|12\.2\(2\.4\)T|12\.0\(19\)ST|12\.0\(18\.3\)ST|12\.0\(19\)S|12\.0\(20\.4\)|12\.1\(10\)|12\.1\(9\.5\)E|12\.1\(7\.5\)EC1|12\.1\(8\.5\)E2|12\.1\(5\)|12\.1\(8a\)E|12\.2\(3\.3\)S|12\.2\(4\)T</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4210" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">service mgcpapp</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:4114" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SP\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?XB\d*|12\.0(\(\d+\))?XM\d*|12\.0(\(\d+\))?XV\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?(1)EX\d*|12\.1(\(\d+\))?(5c)EX\d*|12\.1(\(\d+\))?(8a)EX\d*|12\.1(\(\d+\))?(9)EX\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YI\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?DA\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XF\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XR\d*|12\.2(\(\d+\))?XS\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3304" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1\(5\)YI|12\.1\(5\)T|12\.2\(8\)T|12\.1\(5\)YB|12\.0\(17\)ST5|12\.0\(20\.3\)ST2|12\.1\(3\)XG7|12\.1\(1\)T|12\.2|12\.1\(6\)EX|12\.2\(4\)YA2|12\.2\(7\.4\)S|12\.2\(4\)XM4|12\.1\(5\)XM7|12\.2\(2\)XB4|12\.2\(12\)T|12\.2\(1\)XD4|12\.2\(4\)XR|12\.0\(20\.4\)S|12\.2\(4\)BC1|12\.2\(7\.4\)T|12\.2T|12\.1\(10\)EX|12\.2\(13\)T|12\.2\(2\)XN|12\.2\(7\.4\)|12\.2\(4\)XL5|12\.1\(3\)T|12\.2\(6\)|12\.1\(5\)YC3|12\.1\(11\)E|12\.0\(20\)SP2|12\.2\(2\)XB|12\.2\(2\)XI2|12\.2\(1\)T|12\.2\(2\)XK3|12\.2\(1\)XE3|12\.1\(2\)XF6|12\.0\(17\)S4|12\.2\(2\)T|12\.2\(7\)DA|12\.1\(10\.5\)E|12\.2\(8\)BC1|12\.1\(10\.5\)EC|12\.2\(7\.6\)B|12\.2\(6b\)|12\.2\(6\.8a\)DA|12\.1\(2\)T|12\.2\(4\)YH|12\.0\(20\.4\)SP|12\.2\(4\)B1|12\.2\(4\)YG|12\.2\(4\)YB|12\.1\(11b\)E|12\.2\(4\)T|12\.0\(21\)S|12\.2\(2\)XH3|12\.1\(8b\)E8|12\.2\(7\)|12\.2\(8\)B|12\.1\(12c\)EC|12\.2\(2\)YC|12\.2\(4\)B3|12\.1\(5\)YB6</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3962" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SX\d*|12\.0(\(\d+\))?SZ\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BX\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?EWA\d*|12\.2(\(\d+\))?JK\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SE\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZI\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZN\d*|12\.2(\(\d+\))?ZO\d*|12\.2(\(\d+\))?ZP\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?JA\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XL\d*|12\.3(\(\d+\))?XM\d*|12\.3(\(\d+\))?XN\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XT\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XX\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?XZ\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YE\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4041" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.3\(2\)JA|12\.2\(18\)SXD|12\.3\(7\)T|12\.2\(17d\)SXB1|12\.2\(17d\)SXB2|12\.3\(5c\)|12\.2\(20\)S3|12\.2\(20\)EWA|12\.2\(20\)S4|12\.0\(28\)S|12\.3\(4\)XD4|12\.2\(18\)S|12\.3\(2\)XE1|12\.2\(15\)JK2|12\.0\(27\)S1|12\.3\(11\)T|12\.0\(23\)S|12\.3\(7\)XL|12\.3\(7\)XI1|12\.2\(18\)EW1|12\.3\(11\)YF|12\.3\(8\)YH|12\.3\(2\)T6|12\.3\(6a\)|12\.2\(23\)SV|12\.2\(23\)SW|12\.3\(8\)YG|12\.3\(2\)XT|12\.3\(8\)YD|12\.3\(8\)T|12\.2\(13\)T14|12\.3\(7\)XI|12\.3\(4\)XQ|12\.0\(24\)S6|12\.3\(3f\)|12\.3\(2\)XZ|12\.3\(7\)XJ|12\.3\(7\)XM|12\.3\(4\)XK1|12\.2\(25\)SE|12\.3\(9a\)BC|12\.3\(4\)XG2|12\.2\(25\)S|12\.3\(4\)YE|12\.2\(14\)S9|12\.0\(26\)S2|12\.3\(7\)XS|12\.3\(7\)XR|12\.3\(8\)YA|12\.3\(9\)|12\.3\(8\)XW|12\.2\(14\)SU1|12\.3\(4\)T6|12\.2\(18\)S5|12\.3\(14\)T|12\.2\(15\)T13|12\.0\(27\)SZ|12\.3\(5a\)B2|12\.3\(8\)XX|12\.3\(8\)XY|12\.3\(2\)XC3|12\.3\(8\)XU|12\.0\(25\)S3|12\.2\(15\)T12|12\.0\(25\)SX8|12\.2\(22\)S1</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4078" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XE\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XK\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XS\d*|12\.1(\(\d+\))?XT\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4015" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1\(5\)T|12\.1\(4\)DB|12\.1\(4\)DC|12\.2T|12\.2\(1\)|12\.1\(5\)XS|12\.1\(4\.3\)T</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4148" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">dlsw local-peer</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:4087" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0\(8\)DA3|12\.2\(13\)ZH6|12\.4\(6\)XT2|12\.4\(6\)XE2|12\.0\(3c\)W5\(8\)|12\.0\(4\)XJ5|12\.2\(18\)SXF12a|12\.2\(15\)MC2k|12\.3\(11\)YZ3|12\.4\(9\)T7|12\.2\(44\)SG|12\.3\(8\)YG7|12\.2\(18\)IXF|12\.4\(15\)SW|12\.4\(3h\)|12\.1\(4\)DC2|12\.3\(7\)XR8|12\.2\(29b\)SV|12\.4\(17\)|12\.2\(33\)XN1|12\.2\(8\)TPC10d|12\.4\(10c\)|12\.2\(18\)ZY2|12\.4\(4\)XD10|12\.1\(5\)YE1|12\.3\(14\)YM12|12\.0\(7\)DC|12\.2\(8\)YJ1|12\.3\(2\)XC5|12\.1\(22\)AY1|12\.2\(28\)SB10|12\.4\(6\)T10|12\.4\(15\)T2|12\.2\(4\)YA8|12\.2\(11\)YV1|12\.1\(27b\)E4|12\.1\(5\)XV1|12\.2\(18\)SXF12|12\.2\(18\)SXF13|12\.1\(22\)EA11|12\.3\(2\)XA7|12\.3\(2\)XE6|12\.0\(2\)XC2|12\.3\(7\)XI11|12\.3\(14\)YX11|12\.0\(7\)DB|12\.2\(20\)EX|12\.3\(11\)YS3|12\.4\(9\)XG2|12\.2\(15\)MC2h|12\.0\(4\)XI2|12\.0\(17\)S5|12\.2\(33\)SRA6|12\.2\(33\)SRA7|12\.2\(33\)SXH1|12\.4\(11\)XW6|12\.2\(25\)S15|12\.3\(8\)JK1|12\.1\(4\)DB1|12\.4\(15\)XL2|12\.4\(15\)T4|12\.2\(33\)SRB3|12\.2\(33\)SB|12\.2\(13\)ZH11|12\.2\(33\)SRC|12\.3\(24\)|12\.4\(13e\)|12\.2\(33\)SXH2|12\.4\(11\)XV|12\.4\(2\)XB6|12\.2\(31\)SB11|12\.4\(8d\)|12\.4\(18a\)|12\.2\(29a\)SV1|12\.2\(31\)SB9|12\.3\(26\)|12\.4\(16b\)|12\.3\(23\)BC1|12\.2\(25\)SW10|12\.2\(40\)EX1|12\.1\(3\)XT2|12\.1\(11\)EA1</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3322" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?DA\d*|12\.0(\(\d+\))?DB\d*|12\.0(\(\d+\))?DC\d*|12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?W\d*|12\.0(\(\d+\))?WC\d*|12\.0(\(\d+\))?XA\d*|12\.0(\(\d+\))?XC\d*|12\.0(\(\d+\))?XD\d*|12\.0(\(\d+\))?XE\d*|12\.0(\(\d+\))?XG\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XJ\d*|12\.0(\(\d+\))?XK\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XQ\d*|12\.0(\(\d+\))?XR\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?AY\d*|12\.1(\(\d+\))?DB\d*|12\.1(\(\d+\))?DC\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EZ\d*|12\.1(\(\d+\))?GA\d*|12\.1(\(\d+\))?GB\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XS\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XW\d*|12\.1(\(\d+\))?XX\d*|12\.1(\(\d+\))?XY\d*|12\.1(\(\d+\))?XZ\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YI\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?EX\d*|12\.2(\(\d+\))?IXA\d*|12\.2(\(\d+\))?IXB\d*|12\.2(\(\d+\))?IXC\d*|12\.2(\(\d+\))?IXD\d*|12\.2(\(\d+\))?IXE\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SB\d*|12\.2(\(\d+\))?SBC\d*|12\.2(\(\d+\))?SG\d*|12\.2(\(\d+\))?SRA\d*|12\.2(\(\d+\))?SRB\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SXE\d*|12\.2(\(\d+\))?SXF\d*|12\.2(\(\d+\))?SXH\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?TPC\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XV\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YO\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZU\d*|12\.2(\(\d+\))?ZY\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?JK\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?VA\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YM\d*|12\.3(\(\d+\))?YQ\d*|12\.3(\(\d+\))?YS\d*|12\.3(\(\d+\))?YT\d*|12\.3(\(\d+\))?YU\d*|12\.3(\(\d+\))?YX\d*|12\.3(\(\d+\))?YZ\d*|12\.4(\(\d+\))?\d*|12\.4(\(\d+\))?SW\d*|12\.4(\(\d+\))?T\d*|12\.4(\(\d+\))?XA\d*|12\.4(\(\d+\))?XB\d*|12\.4(\(\d+\))?XC\d*|12\.4(\(\d+\))?XD\d*|12\.4(\(\d+\))?XE\d*|12\.4(\(\d+\))?XG\d*|12\.4(\(\d+\))?XJ\d*|12\.4(\(\d+\))?XK\d*|12\.4(\(\d+\))?XL\d*|12\.4(\(\d+\))?XT\d*|12\.4(\(\d+\))?XV\d*|12\.4(\(\d+\))?XW\d*</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:3401" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">no cdp enable</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:3600" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">^\s*no cdp run</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3648" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(3\.6\)B|12\.2\(4\.1\)S|12\.2\(3\.6\)PB|12\.2\(3\.6\)T|12\.1\(10\.1\)|12\.2\(3\.6\)</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:3227" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">cdp enable</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:4024" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.0(\(\d+\))?\w*\d*|11\.1(\(\d+\))?\w*\d*|11\.2(\(\d+\))?\w*\d*|11\.3(\(\d+\))?\w*\d*|12\.0(\(\d+\))?\w*\d*|12\.1(\(\d+\))?\w*\d*</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4172" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">^\s*cdp run</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:4071" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">aaa new-model</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3370" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.0(\(\d+\))?\w*\d*|11\.1(\(\d+\))?\w*\d*|11\.2(\(\d+\))?\w*\d*|11\.3(\(\d+\))?\w*\d*|12\.0(\(\d+\))?\w*\d*|12\.1(\(\d+\))?\w*\d*|12\.2(\(\d+\))?\w*\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3867" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0\(24\.2\)S|12\.0\(24\)S1|12\.2\(15\)ZN|12\.2\(14\.5\)|12\.2\(16\)B|12\.2\(16\.1\)B|12\.2\(15\.1\)S|12\.2\(14\.5\)T|12\.2\(11\)JA1</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4166" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">enable secret</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:3187" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">^\s*ip http authentication</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:3551" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">^\s*ip http</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:3698" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">enable password</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3467" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.1\(14\)CA|11\.1\(14\)IA|11\.1\(14\)|10\.3\(19a\)|11\.2\(4\)F1|11\.0\(17\)BT|11\.2\(8\)P|11\.2\(4\)F1|11\.2\(8\)|11\.2\(4\)F\)|11\.1\(13\)CA|11\.1\(13\)IA|11\.1\(13\)AA|11\.0\(17\)|11\.1\(13\)|11\.1\(14\)AA|11\.2\(9\)</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4070" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">10\.3(\(\d+\))?\w*\d*|11\.0(\(\d+\))?\w*\d*|11\.1(\(\d+\))?\w*\d*|11\.2(\(\d+\))?\w*\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4248" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1\(8b\)E15|12\.1\(13\.5\)E|12\.1\(13\.5\)E|12\.1\(11b\)E14|12\.1\(13\)E1|12\.2\(14\)SY|12\.2\(14\)ZA</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4133" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1(\(\d+\))?E\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?ZA\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4061" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2(\(\d+\))?T\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3563" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(11\)T3|12\.2\(13\)T1</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4107" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">ip ips \S+ in</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:4163" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">ip ips \S+ out</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:4089" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">^\s*ip http server</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:4276" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(11\)JA</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4183" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">^\s*no ip http server</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:4252" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(4\)JA|12\.2\(4\)JA1|12\.2\(8\)JA|12\.2\(11\)JA</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4075" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(8\)JA|12\.2\(11\)JA</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4154" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">10\.3\(16\)|10\.3\(19a\)|11\.0\(12\)|11\.0\(12a\)BT|11\.0\(17\)|11\.0\(17\)BT|11\.1\(7\)|11\.1\(7\)AA|11\.1\(7\)CA|11\.1\(9\)IA|11\.1\(15\)|11\.1\(15\)AA|11\.1\(15\)CA|11\.1\(15\)IA|11\.2\(4\)|11\.2\(4\)F|11\.2\(10\)|11\.2\(9\)P|11\.2\(4\)F1|10\.3\(19a\)</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4238" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">10\.3(\(\d+\))?\d*|11\.0(\(\d+\))?\d*|11\.1(\(\d+\))?\d*|11\.2(\(\d+\))?\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4069" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1\(05\)DC01</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3160" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">11\.1(\(\d+\))?\w*\d*|11\.2(\(\d+\))?\w*\d*|11\.3(\(\d+\))?\w*\d*|12\.0(\(\d+\))?\w*\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3266" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(13\)ZH9|12\.2\(29a\)SV|12\.3\(11\)YZ2|12\.3\(16\)|12\.3\(18a\)|12\.3\(22a\)|12\.2\(25\)SEG3|12\.2\(31\)SG|12\.2\(37\)SG1|12\.4\(1\)|12\.3\(2\)XA6|12\.2\(31\)SG1|12\.2\(31\)SG2|12\.2\(18\)SXF10|12\.2\(25\)EWA10|12\.3\(15\)|12\.4\(2\)T|12\.3\(17b\)BC8|12\.3\(11\)YK3|12\.2\(14\)S18|12\.2\(14\)S19|12\.4\(6\)T8|12\.2\(30\)S|12\.2\(15\)MC2h|12\.2\(15\)MC2j|12\.2\(27\)SV3|12\.2\(27\)SV2|12\.2\(27\)SV1|12\.3\(19a\)|12\.2\(37\)SE1|12\.2\(25\)SEE4|12\.3\(17a\)BC|12\.4\(16\)|12\.4\(5c\)|12\.3\(21b\)|12\.2\(29\)SV4|12\.3\(11\)T12|12\.2\(18\)S13|12\.3\(7\)XR7|12\.3\(22\)|12\.4\(9\)T5|12\.3\(17a\)|12\.2\(40\)SG|12\.2\(40\)SE|12\.3\(21\)BC|12\.2\(25\)SW11|12\.2\(28\)SV1|12\.3\(2\)XE5|12\.4\(7f\)|12\.4\(10c\)|12\.4\(11\)T3|12\.3\(23\)|12\.3\(7\)XI10a|12\.4\(15\)T1|12\.3\(8\)YG6|12\.3\(7\)XR7|12\.4\(4\)T8|12\.3\(17c\)|12\.3\(20a\)|12\.4\(8d\)|12\.3\(20\)|12\.2\(29\)SV|12\.2\(35\)SE5|12\.4\(2\)T6|12\.3\(8\)YG6|12\.2\(25\)SG2|12\.3\(21a\)BC3|12\.2\(8\)TPC10c|12\.4\(3h\)|12\.0\(32\)SY4|12\.3\(14\)YX9|12\.0\(32\)S8|12\.4\(12c\)|12\.2\(31\)SGA3|12\.3\(14\)YQ|12\.3\(14\)YX|12\.3\(2\)XC5|12\.3\(21\)|12\.3\(19\)|12\.2\(37\)SG|12\.2\(29b\)SV|12\.2\(35\)SE|12\.4\(13d\)|12\.2\(25\)S13|12\.2\(20\)S14|12\.2\(18\)SXE|12\.3\(14\)T|12\.3\(18\)</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3507" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?SX\d*|12\.0(\(\d+\))?SY\d*|12\.0(\(\d+\))?SZ\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?EU\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?EWA\d*|12\.2(\(\d+\))?EZ\d*|12\.2(\(\d+\))?FZ\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SEA\d*|12\.2(\(\d+\))?SEB\d*|12\.2(\(\d+\))?SEC\d*|12\.2(\(\d+\))?SED\d*|12\.2(\(\d+\))?SEE\d*|12\.2(\(\d+\))?SEG\d*|12\.2(\(\d+\))?SG\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?TPC\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XF\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XV\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZR\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YZ\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4184" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SV\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EB\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EO\d*|12\.1(\(\d+\))?EU\d*|12\.1(\(\d+\))?EW\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SW\d*|12\.3(\(\d+\))?\d*|12\.3B(\(\d+\))?\d*|12\.3T(\(\d+\))?\d*|12\.3XC(\(\d+\))?\d*|12\.3XD(\(\d+\))?\d*|12\.3XE(\(\d+\))?\d*|12\.3XF(\(\d+\))?\d*|12\.3XG(\(\d+\))?\d*|12\.3XH(\(\d+\))?\d*|12\.3XK(\(\d+\))?\d*|12\.3XQ(\(\d+\))?\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3884" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0\(23\)S6|12\.0\(24\)S6|12\.0\(26\)S2|12\.0\(27\)S1|12\.0\(27\)SV2|12\.1\(20\)E3|12\.1\(22\)E1|12\.1\(20\)EA1a|12\.1\(22\)EB|12\.1\(20\)EC2|12\.1\(20\)EO1|12\.1\(20\)EU1|12\.1\(20\)EW2|12\.2\(12i\)|12\.2\(21b\)|12\.2\(23\.6\)|12\.2\(24\)|12\.2\(23a\)|12\.2\(20\)S2|12\.2\(22\)S|12\.2\(23\)SW|12\.3\(5c\)|12\.3\(6a\)|12\.3\(7\.7\)|12\.3\(9\)|12\.3\(5\)B1|12\.3\(4\)T4|12\.3\(7\)T|12\.3\(8\)T|12\.3\(4\)XD2|12\.3\(4\)XG1|12\.3\(4\)XH|12\.3\(4\)XK|12\.3\(4\)XQ</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4047" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">crypto key generate rsa</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:4036" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?ST\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?T\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?T\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3231" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1\(14\)E1|12\.2\(11\)T3|12\.0\(23\)S2|12\.0\(20\)ST7|12\.2\(14\)S|12\.1\(13\)E3|12\.2\(13\)T1|12\.0\(21\)S6|12\.0\(21\)ST6|12\.0\(22\)S4|12\.2\(12b\)|12\.2\(13a\)|12\.1\(13\)</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4026" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?\d*|12\.0(\(\d+\))?T\d*|12\.0(\(\d+\))?WC\d*|12\.0(\(\d+\))?XA\d*|12\.0(\(\d+\))?XC\d*|12\.0(\(\d+\))?XD\d*|12\.0(\(\d+\))?XF\d*|12\.0(\(\d+\))?XG\d*|12\.0(\(\d+\))?XH\d*|12\.0(\(\d+\))?XI\d*|12\.0(\(\d+\))?XK\d*|12\.0(\(\d+\))?XL\d*|12\.0(\(\d+\))?XM\d*|12\.0(\(\d+\))?XN\d*|12\.0(\(\d+\))?XQ\d*|12\.0(\(\d+\))?XR\d*|12\.0(\(\d+\))?XV\d*|12\.1(\(\d+\))?\d*|12\.1(\(\d+\))?AA\d*|12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EA\d*|12\.1(\(\d+\))?EC\d*|12\.1(\(\d+\))?EX\d*|12\.1(\(\d+\))?EY\d*|12\.1(\(\d+\))?EZ\d*|12\.1(\(\d+\))?GA\d*|12\.1(\(\d+\))?GB\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XA\d*|12\.1(\(\d+\))?XB\d*|12\.1(\(\d+\))?XC\d*|12\.1(\(\d+\))?XD\d*|12\.1(\(\d+\))?XE\d*|12\.1(\(\d+\))?XF\d*|12\.1(\(\d+\))?XG\d*|12\.1(\(\d+\))?XH\d*|12\.1(\(\d+\))?XI\d*|12\.1(\(\d+\))?XJ\d*|12\.1(\(\d+\))?XL\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XP\d*|12\.1(\(\d+\))?XQ\d*|12\.1(\(\d+\))?XR\d*|12\.1(\(\d+\))?XS\d*|12\.1(\(\d+\))?XT\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?XW\d*|12\.1(\(\d+\))?XY\d*|12\.1(\(\d+\))?XZ\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YH\d*|12\.1(\(\d+\))?YI\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?CZ\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?IXA\d*|12\.2(\(\d+\))?IXB\d*|12\.2(\(\d+\))?IXC\d*|12\.2(\(\d+\))?IXD\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SB\d*|12\.2(\(\d+\))?SBC\d*|12\.2(\(\d+\))?SRA\d*|12\.2(\(\d+\))?SRB\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SVC\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SXE\d*|12\.2(\(\d+\))?SXF\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?TPC\d*|12\.2(\(\d+\))?VZ\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XS\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XV\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YK\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YP\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YS\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZP\d*|12\.2(\(\d+\))?ZR\d*|12\.2(\(\d+\))?ZU\d*|12\.2(\(\d+\))?ZW\d*|12\.2(\(\d+\))?ZY\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?TPC\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YM\d*|12\.3(\(\d+\))?YQ\d*|12\.3(\(\d+\))?YS\d*|12\.3(\(\d+\))?YT\d*|12\.3(\(\d+\))?YU\d*|12\.3(\(\d+\))?YX\d*|12\.3(\(\d+\))?YZ\d*|12\.4(\(\d+\))?\d*|12\.4(\(\d+\))?MR\d*|12\.4(\(\d+\))?T\d*|12\.4(\(\d+\))?XA\d*|12\.4(\(\d+\))?XB\d*|12\.4(\(\d+\))?XC\d*|12\.4(\(\d+\))?XD\d*|12\.4(\(\d+\))?XE\d*|12\.4(\(\d+\))?XF\d*|12\.4(\(\d+\))?XG\d*|12\.4(\(\d+\))?XJ\d*|12\.4(\(\d+\))?XK\d*|12\.4(\(\d+\))?XT\d*|12\.4(\(\d+\))?XV\d*|12\.4(\(\d+\))?XW\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3100" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.3\(4\)TPC11b|12\.2\(13\)ZH9|12\.2\(29a\)SV|12\.3\(11\)YZ2|12\.3\(18a\)|12\.3\(22a\)|12\.4\(6\)XT1|12\.4\(4\)XC7|12\.3\(2\)XA6|12\.2\(18\)SXF10|12\.2\(28d\)|12\.3\(7\)XI8a|12\.3\(14\)YM11|12\.2\(18\)ZY1|12\.2\(18\)ZY2|12\.2\(21\)SW|12\.2\(20\)SW|12\.3\(11\)YK3|12\.4\(4\)XD8|12\.1\(22\)EA10|12\.2\(23\)SV|12\.2\(15\)MC2a|12\.2\(29b\)|12\.4\(6\)T8|12\.2\(30\)S|12\.4\(6\)XE3|12\.2\(15\)MC2i|12\.2\(15\)MC2j|12\.2\(27\)SV3|12\.2\(27\)SV2|12\.3\(19a\)|12\.3\(17b\)BC8|12\.3\(11\)YS2|12\.2\(15\)MC1|12\.4\(16\)|12\.4\(5c\)|12\.3\(21b\)|12\.4\(7f\)|12\.2\(20\)S13|12\.4\(11\)XJ4|12\.2\(46a\)|12\.2\(29\)SV4|12\.3\(11\)T12|12\.2\(18\)S13|12\.2\(22\)SV|12\.2\(28\)SB1|12\.4\(13d\)|12\.2\(8\)MC1|12\.2\(8\)MC2|12\.4\(2\)XB6|12\.2\(4\)BC1|12\.4\(9\)T5|12\.2\(25\)SW10|12\.2\(25\)SW11|12\.2\(28\)SV1|12\.4\(11\)XW3|12\.2\(14\)S19|12\.2\(24\)SV|12\.3\(2\)XC5|12\.2\(33\)SRB2|12\.3\(2\)XE5|12\.2\(27c\)|12\.4\(10c\)|12\.4\(11\)T3|12\.3\(23\)|12\.3\(7\)XI10a|12\.3\(2\)XE5|12\.4\(15\)T1|12\.3\(7\)XR7|12\.4\(4\)T8|12\.2\(33\)SRA5|12\.2\(25\)SV|12\.3\(17c\)|12\.3\(8\)XU|12\.3\(20a\)|12\.4\(8d\)|12\.2\(29\)SV|12\.2\(31\)SB6|12\.4\(12\)MR2|12\.4\(8d\)|12\.4\(2\)T6|12\.2\(21\)SW1|12\.3\(7\)XI1b|12\.3\(8\)YG6|12\.2\(33\)SXH|12\.3\(21a\)BC3|12\.2\(8\)TPC10c|12\.4\(3h\)|12\.3\(14\)YX9|12\.4\(11\)XV1|12\.4\(12c\)|12\.2\(4\)YA12|12\.0\(5\)WC16|12\.3\(19a|12\.1\(27b\)E2|12\.3\(17c\)|12\.2\(8\)ZB|12\.4\(11\)XW2|12\.3\(7\)XI2a|12\.2\(25\)S13|12\.3\(19a\)|12\.2\(28\)SB9|12\.2\(26c\)|12\.2\(18\)IXD1|12\.1\(22\)EA10b|12\.1\(22\)EA10a</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4021" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">crypto isakmp profile</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:4249" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">crypto map \S+ client authentication list</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:3441" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BX\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?CY\d*|12\.2(\(\d+\))?CZ\d*|12\.2(\(\d+\))?JK\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?XZ\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YP\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZK\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZN\d*|12\.2(\(\d+\))?ZP\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XL\d*|12\.3(\(\d+\))?XM\d*|12\.3(\(\d+\))?XN\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XT\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XX\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YC\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4031" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.2\(13\)ZH5|12\.2\(17d\)SXB5|12\.2\(15\)JK2|12\.3\(7\)XS2|12\.3\(11\)YJ|12\.3\(11\)YK|12\.3\(8\)XX1|12\.3\(8\)T5|12\.3\(14\)T|12\.3\(6e\)|12\.3\(4\)XD4|12\.3\(8\)YA1|12\.3\(8\)YG1|12\.3\(8\)YC1|12\.3\(2\)XE1|12\.3\(7\)T7|12\.3\(7\)T6|12\.2\(18\)SXD1|12\.3\(12\)|12\.3\(11\)YF|12\.3\(8\)YH|12\.3\(9c\)|12\.3\(2\)T9|12\.3\(2\)XC3|12\.3\(4\)XQ1|12\.2\(15\)BC1f|12\.3\(2\)XA3|12\.2\(4\)YA8|12\.3\(5a\)B3|12\.3\(8\)YI|12\.3\(11\)T2|12\.3\(9a\)BC|12\.3\(8\)YD|12\.3\(4\)XG2|12\.3\(10a\)|12\.3\(11\)XL|12\.3\(7\)XR3|12\.3\(4\)T8|12\.2\(15\)ZL2|12\.2\(15\)BC2e|12\.2\(14\)SU2|12\.3\(8\)XU3|12\.3T|12\.2\(15\)CZ1|12\.3</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3628" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?ST\d*|12\.0(\(\d+\))?SX\d*|12\.0(\(\d+\))?SY\d*|12\.0(\(\d+\))?SZ\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?EU\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?EWA\d*|12\.2(\(\d+\))?EZ\d*|12\.2(\(\d+\))?IXA\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SB\d*|12\.2(\(\d+\))?SBC\d*|12\.2(\(\d+\))?SEA\d*|12\.2(\(\d+\))?SEB\d*|12\.2(\(\d+\))?SEC\d*|12\.2(\(\d+\))?SED\d*|12\.2(\(\d+\))?SEE\d*|12\.2(\(\d+\))?SEF\d*|12\.2(\(\d+\))?SG\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SXE\d*|12\.2(\(\d+\))?SXF\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?TPC\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XF\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XS\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XV\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YS\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZN\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XX\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YM\d*|12\.3(\(\d+\))?YQ\d*|12\.3(\(\d+\))?YS\d*|12\.3(\(\d+\))?YT\d*|12\.3(\(\d+\))?YU\d*|12\.3(\(\d+\))?YX\d*|12\.3(\(\d+\))?YZ\d*|12\.4(\(\d+\))?\d*|12\.4(\(\d+\))?T\d*|12\.4(\(\d+\))?XA\d*|12\.4(\(\d+\))?XB\d*|12\.4(\(\d+\))?XC\d*|12\.4(\(\d+\))?XD\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3979" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.4\(2\)T4|12\.2\(30\)S|12\.2\(15\)MC2h|12\.4\(6\)T1|12\.2\(25\)SG1|12\.3\(11\)YZ1|12\.4\(3d\)|12\.3\(14\)YX2|12\.3\(14\)T7|12\.0\(32\)S3|12\.3\(4\)T13|12\.3\(17b\)|12\.2\(18\)IXB|12\.2\(25\)EWA6|12\.2\(25\)SEE1|12\.2\(18\)SXF5|12\.2\(31\)SB|12\.2\(25\)SV3|12\.2\(31\)SG|12\.4\(7a\)|12\.3\(7\)XI9|12\.4\(4\)XC5|12\.4\(9\)T|12\.2\(31\)XN|12\.3\(7\)XI8a|12\.2\(27\)SBC4|12\.4\(8\)|12\.2\(25\)S11|12\.2\(28\)SB2|12\.3\(14\)YM8|12\.2\(18\)SXE6|12\.4\(4\)T2|12\.0\(30\)SX|12\.2\(25\)SEF1|12\.2\(25\)SW7|12\.3\(17b\)BC3|12\.3\(11\)T10|12\.4\(2\)XB2|12\.2\(18\)SXD7a|12\.4\(5b\)|12\.2\(26\)SV|12\.4\(4\)XD2|12\.3\(18\)|12\.0\(32\)SY</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4097" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.3(7)T\d*|12\.4(3b)|12\.3(4)T\d*|12\.3(14)YX3|12\.3(2)T\d*|12\.3(11)YZ|12\.4(2)T3|12\.3(14)YM5|12\.4(2)XA2|12\.3(11)YF|12\.4(4)T|12\.4(11)T1|12\.4(6)MR1|12\.4(5)|12\.4(12)|12\.3(14)YQ8|12\.4(1c)|12\.3(11)T10|12\.4(7e)|12\.4(10b)|12\.3(14)T7|12\.4(9)T3|12\.4(6)T|12\.4(2)XB3</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3417" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.3(\(\d+\))?T\d*|12\.3(8)T\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XX\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YM\d*|12\.3(\(\d+\))?YQ\d*|12\.3(\(\d+\))?YS\d*|12\.3(\(\d+\))?YT\d*|12\.3(\(\d+\))?YX\d*|12\.3(\(\d+\))?YZ\d*|12\.4(\(\d+\))?\d*|12\.4(8)\d*|12\.4(\(\d+\))?MR\d*|12\.4(\(\d+\))?T\d*|12\.4(\(\d+\))?XA\d*|12\.4(\(\d+\))?XB\d*|12\.4(\(\d+\))?XE\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3997" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1(\(\d+\))?E\d*|12\.1(\(\d+\))?EZ\d*|12\.1(\(\d+\))?T\d*|12\.1(\(\d+\))?XM\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?YA\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.2(\(\d+\))?\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XQ\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:4023" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.1\(5\)YC1|12\.2\(1\)XD1|12\.2\(2\)XA|12\.2\(1\)XE|12\.1\(7a\)E1|12\.2\(3\)|12\.1\(5\)YD2|12\.2\(1\)XQ|12\.1\(6\)EZ2|12\.2\(4\)T|12\.2\(1\)XH|12\.2\(1\.1\)|12\.1\(5\)XM4|12\.1\(9\)E|12\.1\(5\)XV3|12\.1\(8a\)E|12\.1\(5\)YB4|12\.2\(2\)XB</major_release>
    </version_state>
    <line_state id="oval:org.mitre.oval:ste:4055" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">ipv6 address</config_line>
    </line_state>
    <line_state id="oval:org.mitre.oval:ste:3918" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <show_subcommand>show running-config</show_subcommand>
      <config_line operation="pattern match">ipv6 enabled</config_line>
    </line_state>
    <version_state id="oval:org.mitre.oval:ste:4091" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.0(\(\d+\))?S\d*|12\.0(\(\d+\))?SY\d*|12\.0(\(\d+\))?SZ\d*|12\.1(\(\d+\))?XU\d*|12\.1(\(\d+\))?XV\d*|12\.1(\(\d+\))?YB\d*|12\.1(\(\d+\))?YC\d*|12\.1(\(\d+\))?YD\d*|12\.1(\(\d+\))?YE\d*|12\.1(\(\d+\))?YF\d*|12\.1(\(\d+\))?YH\d*|12\.1(\(\d+\))?YI\d*|12\.2(\(\d+\))?B\d*|12\.2(\(\d+\))?BC\d*|12\.2(\(\d+\))?BW\d*|12\.2(\(\d+\))?BY\d*|12\.2(\(\d+\))?BZ\d*|12\.2(\(\d+\))?CX\d*|12\.2(\(\d+\))?CY\d*|12\.2(\(\d+\))?CZ\d*|12\.2(\(\d+\))?DD\d*|12\.2(\(\d+\))?DX\d*|12\.2(\(\d+\))?EU\d*|12\.2(\(\d+\))?EW\d*|12\.2(\(\d+\))?EWA\d*|12\.2(\(\d+\))?EX\d*|12\.2(\(\d+\))?EY\d*|12\.2(\(\d+\))?EZ\d*|12\.2(\(\d+\))?FX\d*|12\.2(\(\d+\))?FY\d*|12\.2(\(\d+\))?FZ\d*|12\.2(\(\d+\))?IXA\d*|12\.2(\(\d+\))?IXB\d*|12\.2(\(\d+\))?IXC\d*|12\.2(\(\d+\))?IXD\d*|12\.2(\(\d+\))?JA\d*|12\.2(\(\d+\))?JK\d*|12\.2(\(\d+\))?MB\d*|12\.2(\(\d+\))?MC\d*|12\.2(\(\d+\))?S\d*|12\.2(\(\d+\))?SB\d*|12\.2(\(\d+\))?SBC\d*|12\.2(\(\d+\))?SE\d*|12\.2(\(\d+\))?SEA\d*|12\.2(\(\d+\))?SEB\d*|12\.2(\(\d+\))?SEC\d*|12\.2(\(\d+\))?SED\d*|12\.2(\(\d+\))?SEE\d*|12\.2(\(\d+\))?SEF\d*|12\.2(\(\d+\))?SEG\d*|12\.2(\(\d+\))?SG\d*|12\.2(\(\d+\))?SGA\d*|12\.2(\(\d+\))?SM\d*|12\.2(\(\d+\))?SO\d*|12\.2(\(\d+\))?SRA\d*|12\.2(\(\d+\))?SRB\d*|12\.2(\(\d+\))?SU\d*|12\.2(\(\d+\))?SV\d*|12\.2(\(\d+\))?SW\d*|12\.2(\(\d+\))?SX\d*|12\.2(\(\d+\))?SXA\d*|12\.2(\(\d+\))?SXB\d*|12\.2(\(\d+\))?SXD\d*|12\.2(\(\d+\))?SXE\d*|12\.2(\(\d+\))?SXF\d*|12\.2(\(\d+\))?SY\d*|12\.2(\(\d+\))?SZ\d*|12\.2(\(\d+\))?T\d*|12\.2(\(\d+\))?TPC\d*|12\.2(\(\d+\))?UZ\d*|12\.2(\(\d+\))?XA\d*|12\.2(\(\d+\))?XB\d*|12\.2(\(\d+\))?XC\d*|12\.2(\(\d+\))?XD\d*|12\.2(\(\d+\))?XE\d*|12\.2(\(\d+\))?XF\d*|12\.2(\(\d+\))?XG\d*|12\.2(\(\d+\))?XH\d*|12\.2(\(\d+\))?XI\d*|12\.2(\(\d+\))?XJ\d*|12\.2(\(\d+\))?XK\d*|12\.2(\(\d+\))?XL\d*|12\.2(\(\d+\))?XM\d*|12\.2(\(\d+\))?XN\d*|12\.2(\(\d+\))?XQ\d*|12\.2(\(\d+\))?XR\d*|12\.2(\(\d+\))?XT\d*|12\.2(\(\d+\))?XU\d*|12\.2(\(\d+\))?XV\d*|12\.2(\(\d+\))?XW\d*|12\.2(\(\d+\))?YA\d*|12\.2(\(\d+\))?YB\d*|12\.2(\(\d+\))?YC\d*|12\.2(\(\d+\))?YD\d*|12\.2(\(\d+\))?YE\d*|12\.2(\(\d+\))?YF\d*|12\.2(\(\d+\))?YG\d*|12\.2(\(\d+\))?YH\d*|12\.2(\(\d+\))?YJ\d*|12\.2(\(\d+\))?YK\d*|12\.2(\(\d+\))?YL\d*|12\.2(\(\d+\))?YM\d*|12\.2(\(\d+\))?YN\d*|12\.2(\(\d+\))?YO\d*|12\.2(\(\d+\))?YP\d*|12\.2(\(\d+\))?YQ\d*|12\.2(\(\d+\))?YR\d*|12\.2(\(\d+\))?YT\d*|12\.2(\(\d+\))?YU\d*|12\.2(\(\d+\))?YV\d*|12\.2(\(\d+\))?YW\d*|12\.2(\(\d+\))?YX\d*|12\.2(\(\d+\))?YY\d*|12\.2(\(\d+\))?YZ\d*|12\.2(\(\d+\))?ZA\d*|12\.2(\(\d+\))?ZB\d*|12\.2(\(\d+\))?ZC\d*|12\.2(\(\d+\))?ZD\d*|12\.2(\(\d+\))?ZE\d*|12\.2(\(\d+\))?ZF\d*|12\.2(\(\d+\))?ZG\d*|12\.2(\(\d+\))?ZH\d*|12\.2(\(\d+\))?ZJ\d*|12\.2(\(\d+\))?ZL\d*|12\.2(\(\d+\))?ZP\d*|12\.2(\(\d+\))?ZU\d*|12\.3(\(\d+\))?\d*|12\.3(\(\d+\))?B\d*|12\.3(\(\d+\))?BC\d*|12\.3(\(\d+\))?BW\d*|12\.3(\(\d+\))?JA\d*|12\.3(\(\d+\))?JEA\d*|12\.3(\(\d+\))?JEB\d*|12\.3(\(\d+\))?JK\d*|12\.3(\(\d+\))?JL\d*|12\.3(\(\d+\))?JX\d*|12\.3(\(\d+\))?T\d*|12\.3(\(\d+\))?TPC\d*|12\.3(\(\d+\))?VA\d*|12\.3(\(\d+\))?XA\d*|12\.3(\(\d+\))?XB\d*|12\.3(\(\d+\))?XC\d*|12\.3(\(\d+\))?XD\d*|12\.3(\(\d+\))?XE\d*|12\.3(\(\d+\))?XF\d*|12\.3(\(\d+\))?XG\d*|12\.3(\(\d+\))?XH\d*|12\.3(\(\d+\))?XI\d*|12\.3(\(\d+\))?XJ\d*|12\.3(\(\d+\))?XK\d*|12\.3(\(\d+\))?XQ\d*|12\.3(\(\d+\))?XR\d*|12\.3(\(\d+\))?XS\d*|12\.3(\(\d+\))?XU\d*|12\.3(\(\d+\))?XW\d*|12\.3(\(\d+\))?XY\d*|12\.3(\(\d+\))?YA\d*|12\.3(\(\d+\))?YD\d*|12\.3(\(\d+\))?YF\d*|12\.3(\(\d+\))?YG\d*|12\.3(\(\d+\))?YH\d*|12\.3(\(\d+\))?YI\d*|12\.3(\(\d+\))?YJ\d*|12\.3(\(\d+\))?YK\d*|12\.3(\(\d+\))?YM\d*|12\.3(\(\d+\))?YQ\d*|12\.3(\(\d+\))?YS\d*|12\.3(\(\d+\))?YT\d*|12\.3(\(\d+\))?YU\d*|12\.3(\(\d+\))?YX\d*|12\.3(\(\d+\))?YZ\d*|12\.4(\(\d+\))?\d*|12\.4(\(\d+\))?MR\d*|12\.4(\(\d+\))?SW\d*|12\.4(\(\d+\))?T\d*|12\.4(\(\d+\))?XA\d*|12\.4(\(\d+\))?XB\d*|12\.4(\(\d+\))?XC\d*|12\.4(\(\d+\))?XD\d*|12\.4(\(\d+\))?XE\d*|12\.4(\(\d+\))?XF\d*|12\.4(\(\d+\))?XG\d*|12\.4(\(\d+\))?XJ\d*|12\.4(\(\d+\))?XK\d*|12\.4(\(\d+\))?XL\d*|12\.4(\(\d+\))?XM\d*|12\.4(\(\d+\))?XN\d*|12\.4(\(\d+\))?XT\d*|12\.4(\(\d+\))?XV\d*|12\.4(\(\d+\))?XW\d*|12\.4(\(\d+\))?XY\d*</major_release>
    </version_state>
    <version_state id="oval:org.mitre.oval:ste:3627" version="1" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#ios">
      <major_release operation="pattern match">12\.3\(4\)TPC11b|12\.4\(6\)XT2|12\.3\(7\)JX10|12\.2\(13\)ZH9|12\.4\(15\)T|12\.3\(11\)YZ2|12\.2\(18\)SXF9|12\.3\(18a\)|12\.2\(25\)SEG4|12\.2\(4\)YA13|12\.2\(33\)XN1|12\.2\(25\)SEG3|12\.4\(4\)XC7|12\.3\(2\)XA6|12\.3\(2\)XA7|12\.2\(31\)SG3|12\.2\(18\)SXF13|12\.2\(18\)SXF12a|12\.2\(25\)EWA10|12\.2\(25\)EWA11|12\.2\(25\)EWA13|12\.2\(25\)SEF3|12\.2\(31\)SB11|12\.3\(17b\)BC8|12\.3\(11\)YK3|12\.3\(7\)JX9|12\.4\(4\)XD7|12\.2\(14\)S18|12\.4\(6\)T8|12\.2\(15\)MC2h|12\.3\(14\)YM10|12\.2\(15\)MC2k|12\.3\(8\)JEB2|12\.3\(8\)JEB1|12\.3\(19a\)|12\.4\(15\)SW|12\.2\(44\)SG|12\.3\(7\)JA5|12\.2\(25\)SEE4|12\.2\(29\)SVD|12\.3\(11\)YS3|12\.3\(14\)YM12|12\.4\(11\)SW3|12\.4\(5c\)|12\.2\(20\)S14|12\.4\(11\)XJ4|12\.2\(33\)SXH2|12\.2\(18\)S13|12\.4\(16\)MR2|12\.4\(7e\)|12\.4\(9\)T3|12\.4\(2\)XB6|12\.4\(12\)MR|12\.4\(9\)XG2|12\.3\(14\)YX11|12\.3\(23\)BC1|12\.2\(31\)SB5|12\.2\(37\)EY|12\.2\(37\)EX|12\.3\(8\)JK1|12\.2\(33\)SB|12\.2\(33\)SRB3|12\.2\(33\)SRB1|12\.3\(2\)XE6|12\.4\(10c\)|12\.4\(11\)T2|12\.3\(23\)|12\.4\(6\)XT1|12\.4\(15\)T4|12\.4\(6\)XE2|12\.3\(2\)JK3|12\.3\(8\)JEA4|12\.3\(8\)JEA2|12\.2\(33\)SRC|12\.3\(7\)XR7|12\.2\(33\)SRA7|12\.2\(33\)SRA4|12\.3\(17c\)|12\.3\(7\)XR8|12\.3\(11\)JA4|12\.4\(8d\)|12\.2\(35\)SE4|12\.4\(2\)T6|12\.2\(44\)SE1|12\.3\(8\)YG6|12\.2\(25\)SG3|12\.3\(21a\)BC2|12\.4\(3h\)|12\.2\(31\)SGA5|12\.2\(8\)TPC10b|12\.3\(14\)YX8|12\.2\(31\)SGA6|12\.2\(31\)SGA3|12\.2\(31\)SGA2|12\.3\(23\)BC|12\.4\(18a\)|12\.4\(4\)XD10|12\.2\(35\)EX1|12\.3\(8\)JK|12\.1\(5\)YE6|12\.3\(2\)XC5|12\.2\(18\)SXF10a|12\.2\(37\)SE|12\.4\(12\)|12\.2\(37\)SG|12\.2\(29b\)SV|12\.3\(7\)XI10|12\.2\(13\)ZH11|12\.2\(25\)S13|12\.2\(25\)S15|12\.2\(28\)SB7|