diff --git a/lib/controller/controller.py b/lib/controller/controller.py index 0c303ce13..b56089c74 100644 --- a/lib/controller/controller.py +++ b/lib/controller/controller.py @@ -416,7 +416,8 @@ def start(): elif parameter in conf.testParameter: pass - elif parameter.upper() in IGNORE_PARAMETERS: + # Ignore session-like parameters for --level < 4 + elif conf.level < 4 and parameter.upper() in IGNORE_PARAMETERS: testSqlInj = False infoMsg = "ignoring %s parameter '%s'" % (place, parameter)