Cisco released a security update for critical Authentication Bypass vulnerability that resides in the Cisco REST API virtual service container for Cisco IOS XE Software allows a remote attacker to bypass the authentication in managed Cisco devices.
Cisco IOS XE is an internetworking OS that mainly deployed in Cisco ARS 1000 series routers and Catalyst switches such as 3850 that operating in enterprise wired and wireless access, aggregation, core, and WAN.
Read more at Authentication Bypass Vulnerability in Cisco REST API Let Hackers Take Control of Cisco Routers Remotely