CVE-2026-89178: Howyar|WeenyGenius - Origin Validation Error
Published Sep 11, 2026
·Updated
WeenyGenius, a computer lab management system by Howyar Technologies, has an Origin Validation Error vulnerability. Unauthenticated attackers on the same network can spoof the teacher workstation and send broadcast packets, causing student computers to attempt to establish a connection with the attacker.
Affected Software
1 affected component
Howyar WeenyGenius
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Howyar/WeenyGeniusto a version that resolves this vulnerability.Fixed in 12.3.033
Event History
Sep 11, 2026
CVE Published
via MITRE·07:36 AM
Data Sourced
via MITRE·07:36 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
Who can exploit this issue?
An unauthenticated attacker on the same network as the WeenyGenius deployment can exploit it. No prior credentials are required.
2
What does successful exploitation allow?
The attacker can spoof a teacher workstation and send broadcast packets. This causes student computers to attempt to establish a connection with the attacker.