WeenyGenius 是由 Howyar Technologies 开发的计算机实验室管理系统,存在一个“缺少身份验证”的漏洞。同一网络中的未认证攻击者可以轻松伪装成学生或教师终端。冒充学生终端可能会干扰正常的课堂运作;而冒充教师终端则能够引导学生计算机发起连接,从而实现对受影响的学生终端的远程控制。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Howyar | WeenyGenius | 0 ~ 12.2.031 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-89177 | 8.8 HIGH | Howyar|WeenyGenius - Use of Insecure Protocol |
| CVE-2026-89178 | 8.8 HIGH | Howyar|WeenyGenius - Origin Validation Error |
| CVE-2026-89179 | 4.3 MEDIUM | Howyar|WeenyGenius - Missing Support for Integrity Check |
No comments yet