Microsoft SQL Server 7, 2000, and MSDE allows local users to gain privileges by hijacking a named pipe during the authentication of another user, aka the "Named Pipe Hijacking" vulnerability.
AV:L/AC:L/Au:N/C:C/I:C/A:C
This vulnerability has a 2.26% probability of being exploited in the next 30 days, ranking higher than 82% of all scored CVEs.