---
id: CVE-2026-89178
title: >-
  WeenyGenius, a computer lab management system by Howyar Technologies, has an
  Origin Validation Error vulnerability
summary: >-
  WeenyGenius, a computer lab management system by Howyar Technologies, has an
  Origin Validation Error vulnerability. Unauthenticated attackers on the same
  network can spoof the teacher workstation and send broadcast packets, causing
  stude…
severity: high
cvss: 8.8
cvssVector: 'CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-940
vendor: Howyar
product: WeenyGenius
affected:
  - WeenyGenius <= 12.2.031
published: '2026-09-11'
updated: '2026-09-11'
sourceUpdated: '2026-09-11T16:17:50.317'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-89178'
references:
  - url: 'https://www.twcert.org.tw/en/cp-139-11200-ffc3c-2.html'
    label: twcert@cert.org.tw
  - url: 'https://www.twcert.org.tw/tw/cp-132-11201-658c0-1.html'
    label: twcert@cert.org.tw
tags:
  - nvd
  - cve.org
ssvc:
  exploitation: none
  automatable: 'no'
  technicalImpact: total
  timestamp: '2026-09-11T15:30:40.855860Z'
epss: 0.00229
epssPercentile: 0.13942
ingestedAt: '2026-09-11T16:45:47.860Z'
---

## Overview

WeenyGenius, a computer lab management system by Howyar Technologies, has an Origin Validation Error vulnerability. Unauthenticated attackers on the same network can spoof the teacher workstation and send broadcast packets, causing student computers to attempt to establish a connection with the attacker.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
