Use of Insecure Protocol in WeenyGenius by Howyar Technologies
CVE-2026-89177
8.7HIGH
What is CVE-2026-89177?
The WeenyGenius system, designed for managing computer labs, is vulnerable due to its reliance on ZMTP Null mode, allowing unauthenticated users on the same network to intercept packets. This exposes sensitive data transmission to potential leaks and enables attackers to execute replay attacks using forged commands, which could disrupt normal classroom activities and compromise the integrity of the system. Organizations utilizing WeenyGenius should implement immediate countermeasures to secure their networks against these threats.
Affected Version(s)
WeenyGenius 0 <= 12.2.031
