VYPR

CWE-561

Dead Code

BaseDraft

Description

The product contains dead code, which can never be executed.

Dead code is code that can never be executed in a running program. The surrounding code makes it impossible for a section of code to ever be executed.

Hierarchy (View 1000)

Parents

Children

none

CVEs mapped to this weakness (9)

  • CVE-2025-34205CriSep 19, 2025
    risk 0.64cvss 9.8epss 0.01

    Vasion Print (formerly PrinterLogic) Virtual Appliance Host versions prior to 22.0.843 and Application prior to 20.0.1923 (VA and SaaS deployments) contains dangerous PHP dead code present in multiple Docker-hosted PHP instances. A script named /var/www/app/resetroot.php (found…

  • CVE-2024-8300HigNov 28, 2024
    risk 0.46cvss 7.0epss 0.00

    Dead Code vulnerability in Mitsubishi Electric GENESIS64 Version 10.97.2, 10.97.2 CFR1, 10.97.2 CRF2 and 10.97.3, Mitsubishi Electric Iconics Digital Solutions GENESIS64 Version 10.97.2, 10.97.2 CFR1, 10.97.2 CRF2 and 10.97.3, Mitsubishi Electric ICONICS Suite Version 10.97.2,…

  • CVE-2018-0039MedJul 11, 2018
    risk 0.42cvss 6.5epss 0.01

    Juniper Networks Contrail Service Orchestration releases prior to 4.0.0 have Grafana service enabled by default with hardcoded credentials. These credentials allow network based attackers unauthorized access to information stored in Grafana or exploit other weaknesses or…

  • CVE-2024-32634MedApr 16, 2024
    risk 0.40cvss 6.1epss 0.00

    In huge memory get unmapped area check, code can never be reached because of a logical contradiction.

  • CVE-2022-33685MedJul 12, 2022
    risk 0.26cvss 4.0epss 0.00

    Unprotected dynamic receiver in Wearable Manager Service prior to SMR Jul-2022 Release 1 allows attacker to launch arbitray activity and access senstive information.

  • CVE-2022-30748MedJun 7, 2022
    risk 0.26cvss 4.0epss 0.00

    Unprotected dynamic receiver in Samsung Members prior to version 4.2.005 allows attacker to launch arbitrary activity.

  • CVE-2022-33726LowAug 5, 2022
    risk 0.21cvss 3.3epss 0.00

    Unprotected dynamic receiver in Samsung Galaxy Friends prior to SMR Aug-2022 Release 1 allows attacker to launch activity.

  • CVE-2021-25398LowJun 11, 2021
    risk 0.21cvss 3.3epss 0.00

    Intent redirection vulnerability in Bixby Voice prior to version 3.1.12 allows attacker to access contacts.

  • CVE-2026-44057LowMay 21, 2026
    risk 0.13cvss 3.1epss 0.00

    A dead bounds check in the Spotlight RPC unmarshaller in Netatalk 3.0.0 through 4.4.2 results in an unreachable code path that provides no effective bounds protection, which may allow a remote authenticated attacker to obtain limited information via crafted Spotlight RPC…