The steps for installing the patch are given below. 1. Download the fix (log4j_2.17.1.zip) from this site. 2. Extract the zip file contents into a folder. 3. Stop all the SapphireIMS services which are running in the order SapphireIMS, SapphireIMSMessageQueue, SapphireMySQL followed by any of the other services. 4. Go to the '/WebManagement\modules\system\layers\base\tkd\sapphireims\main\' folder and delete the following jar files if present: i. log4j-1.2-api-2.11.1.jar ii. log4j-core-2.11.1.jar iii. log4j-api-2.11.1.jar iv. log4j-1.2-api-2.15.0.jar v. log4j-core-2.15.0.jar vi. log4j-api-2.15.0.jar vii. log4j-1.2-api-2.16.0.jar viii.log4j-core-2.16.0.jar ix. log4j-api-2.16.0.jar x. log4j-1.2-api-2.17.0.jar Xi. log4j-core-2.17.0.jar Xii. log4j-api-2.17.0.jar 5. Copy the following jar files from the folder which contains the unzipped files in to '/WebManagement\modules\system\layers\base\tkd\sapphireims\main\' folder. i. log4j-1.2-api-2.17.1.jar ii. log4j-core-2.17.1.jar iii. log4j-api-2.17.1.jar 6. Open '/WebManagement\modules\system\layers\base\tkd\sapphireims\main\module.xml' in any text editor i Remove the following lines if present ii. Add the following lines 7. Save the file 8. If the Log Analyzer plugin is installed follow the additional steps below: i. Go to the '\elasticsearch\lib' folder and delete the following jar files if present: a. log4j-1.2-api-2.11.1.jar b. log4j-core-2.11.1.jar c. log4j-api-2.11.1.jar d. log4j-1.2-api-2.15.0.jar e. log4j-core-2.15.0.jar f. log4j-api-2.15.0.jar g. log4j-1.2-api-2.16.0.jar h. log4j-core-2.16.0.jar i. log4j-api-2.16.0.jar j.log4j-1.2-api-2.17.0.jar k.. log4j-core-2.17.0.jar l. log4j-api-2.17.0.jar ii. Copy the following jar files from the folder which contains the unzipped files in to '\elasticsearch\lib' folder a. log4j-1.2-api-2.17.1.jar b. log4j-core-2.17.1.jar c. log4j-api-2.17.1.jar iii.Go to the '\logstash\logstash-core\lib\jars\' folder and delete the following jar files if present: a. log4j-core-2.9.1.jar b. log4j-api-2.9.1.jar c. log4j-core-2.16.0.jar d. log4j-api-2.16.0.jar e.log4j-core-2.17.0.jar f. log4j-api-2.17.0.jar iv. Copy the following jar files from the folder which contains the unzipped files in to '\logstash\logstash-core\lib\jars\' folder a. log4j-core-2.17.1.jar b. log4j-api-2.17.1.jar 9. Delete the '\WebManagement\standalone\tmp' folder 10.Start the SapphireIMS services in the order SapphireMySQL, SapphireIMSMessageQueue, SapphireIMS and then followed by any other service.