Observed below log4j errors for the adminui in the below mentioned /tmp location.
/usr/local/nete/siteminder/adminui/standalone/tmp/vfs/deployment/deploymenta19837770e696dd5/log4j-core-2.10.0.jar-8f8d028f5dc28fee/log4j-core-2.10.0.jar
/usr/local/nete/siteminder/adminui/standalone/tmp/vfs/deployment/deploymenta19837770e696dd5/log4j-core-2.10.0.jar-99d9f79e25b28a38/log4j-core-2.10.0.jar
Release: 12.8 SP2 (The above mentioned errors were reported)
Component: CA Siteminder AdminUI (WAMUI) release 12.8 SP6a and 12.8 SP7.
With the 12.8 SP6a release, we shipped " log4j-core-2.17.1.jar " release log4j files.
With the 12.8 SP7 release, we shipped " log4j-core-2.17.2.jar " release log4j files.
Whenever we upgrade to latest releases (12.8 SP6a or 12.8 SP7), we do not need to update any log4j files manually either in the siteminder location or in the AdminUI location since we are shipping the latest log4j files with the OOTB (Out of the Box) solution.
For detailed Information, please go through the below document.
CVE-2021-44228: SiteMinder Resolution to the Log4j Vulnerability.
https://knowledge.broadcom.com/external/article/230270/cve202144228-siteminder-resolution-to-th.html