CVE-2026-75907

HIGH CVSS 3.1: 7.5 EPSS 0.36%
Updated Sep 28, 2026
Norwegian Cruise Line
Parameter Value
CVSS 7.5 (HIGH)
Type CWE-294 Authentication Bypass by Capture-replay, CWE-287 Improper Authentication, CWE-287 (Improper Authentication), CWE-613 Insufficient Session Expiration, CWE-613, CWE-294 (Authentication Bypass by Capture-Replay)
Vendor Norwegian Cruise Line
Public PoC No

The door access control on a Norwegian Cruise Line asset grants entry based only on the credential's static 7-byte UID stored on an NTAG212 NFC chip. A UID is a manufacturer serial number sent in the clear on every read and is not intended to be secret or to authenticate the holder. Validating on the UID of the NTAG212 NFC chip alone is identification, not authentication, and the credential has no challenge-response capability that would resist copying.

Attack Parameters

Attack Vector
Network
Can be exploited remotely
Attack Complexity
Low
Easy to exploit
Privileges Required
None
No privileges needed
User Interaction
None
No user interaction needed

Impact Assessment

Confidentiality
High
Complete data leak
Integrity
None
No data modification
Availability
None
No disruption

CVSS Vector v3.1

Vulnerable Products

norwegian cruise line:door access control