Description
A Clickjacking vulnerability exists in Rems' Employee Management System 1.0. This flaw allows remote attackers to execute arbitrary JavaScript on the department.php page by injecting a malicious payload into the Department Name field under Add Department.
References
github.com/Jazeye/CVE/blob/main/CVE-2025-57117/README.md