major fix for heuristic check

This commit is contained in:
Miroslav Stampar 2010-10-27 08:27:31 +00:00
parent 749e25a217
commit 5cc1bd8a12

View File

@ -104,10 +104,7 @@ def heuristicCheckSqlInjection(place, parameter, value):
postfix = conf.postfix
payload = "%s%s%s" % (prefix, randomStr(length=10, alphabet=['"', '\'', ')', '(']), postfix)
if place == "URI":
payload = conf.paramDict[place][parameter].replace('*', payload)
payload = agent.payload(place, parameter, value, payload)
Request.queryPage(payload, place)
result = wasLastRequestError()