SQL injection vulnerability in stored procedures for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 may allow authenticated users to execute arbitrary commands.
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-038