Subdreamer version 2.5.3.2 hotfix#5 suffers from SQL injection vulnerabilities due to the embedding of vulnerable Invision Power Board 2 and phpBB3 modules.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/80527/subdreamer-sql.txt
Source: https://packetstormsecurity.com/files/80527/Subdreamer-SQL-Injection.html