PatchSiren

Howyar CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Howyar CVE published 2026-09-11

CVE-2026-89179

CVE-2026-89179 is a Missing Support for Integrity Check vulnerability in WeenyGenius, a computer lab management system by Howyar Technologies. Unauthenticated attackers on the same network can intercept a student's connection packet and replay it, forging the appearance that the student remains connected. This vulnerability allows for potential unauthorized access and could lead to security breaches if no [truncated]

HIGH Howyar CVE published 2026-09-11

CVE-2026-89178

CVE-2026-89178 is a high-severity vulnerability in WeenyGenius, a computer lab management system by Howyar Technologies. The vulnerability is caused by an Origin Validation Error, allowing unauthenticated attackers on the same network to spoof the teacher workstation and send broadcast packets, causing student computers to attempt to establish a connection with the attacker.

HIGH Howyar CVE published 2026-09-11

CVE-2026-89177

CVE-2026-89177 debrief based on the supplied source corpus. WeenyGenius, a computer lab management system by Howyar Technologies, has a Use of Insecure Protocol vulnerability due to its reliance on ZMTP Null mode, allowing unauthenticated attackers on the same network to capture packets and leak transmitted data or perform replay attacks with forged commands to disrupt classroom operations. Defenders shou [truncated]

HIGH Howyar CVE published 2026-09-11

CVE-2026-89176

The WeenyGenius computer lab management system, developed by Howyar Technologies, has a Missing Authentication vulnerability. This vulnerability allows unauthenticated attackers on the same network to spoof student or teacher endpoints easily. Impersonating a student can disrupt normal classroom operations, while impersonating a teacher can induce student computers to initiate connections, thereby gaining [truncated]