diff --git a/lib/controller/checks.py b/lib/controller/checks.py index f2f0752e3..2842a954e 100644 --- a/lib/controller/checks.py +++ b/lib/controller/checks.py @@ -104,10 +104,7 @@ def heuristicCheckSqlInjection(place, parameter, value): postfix = conf.postfix payload = "%s%s%s" % (prefix, randomStr(length=10, alphabet=['"', '\'', ')', '(']), postfix) - - if place == "URI": - payload = conf.paramDict[place][parameter].replace('*', payload) - + payload = agent.payload(place, parameter, value, payload) Request.queryPage(payload, place) result = wasLastRequestError()