CVE-2025-57117: Remyandrade Employee Management System

Medium severity, CVSS 5.4. EPSS: 0.3% chance of exploitation in the next 30 days.

A Clickjacking vulnerability exists in Rems' Employee Management System 1.0. This flaw allows remote attackers to execute arbitrary JavaScript on the department.php page by injecting a malicious payload into the Department Name field under Add Department.

Affected products

  • Remyandrade Employee Management System: version 1.0 only

Published 2025-09-15. Last modified 2026-07-05.