CVE-2014-8164: Red Hat Cloudforms Management Engine

Critical severity, CVSS 9.1. EPSS: 0.6% chance of exploitation in the next 30 days.

A insecure configuration for certificate verification (http.verify_mode = OpenSSL::SSL::VERIFY_NONE) may lead to verification bypass in Red Hat CloudForms 5.x.

Affected products

  • Red Hat Cloudforms Management Engine: version 5.0 only

Published 2022-07-06. Last modified 2026-06-17.