NDProxy.sys in the kernel in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows local users to gain privileges via a crafted application, as exploited in the wild in November 2013.
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2013-5065
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2014/ms14-002