NetGear · Netgear Wax610Y · CVE-2025-12940
**Name of the Vulnerable Software and Affected Versions**
NETGEAR WAX610 versions prior to 11.8.0.10
NETGEAR WAX610Y versions prior to 11.8.0.10
**Description**
A configuration issue can lead to login credentials being inadvertently recorded in logs when a Syslog Server is configured. An attacker with access to the syslog server can then read these logs and obtain the credentials.
**Recommendations**
Update WAX610 to firmware version 11.8.0.10 or later.
Update WAX610Y to firmware version 11.8.0.10 or later.