The super secure IIS 7 can be owned, too weak by default. Now it’s time for Windows 2008 exploit (it should work on Windows 2003 too) You can find the PoC exploit here: http://www.argeniss.com/research/Churrasco2.zipEnjoy. The exploit should also be applied to Windows 2008 and 2003 versions of both versions of the IIS7 and Windows 2003 versions. You can download the exploit for yourself to see how easy it can be done.”]
Source: http://nomoreroot.blogspot.com/2008/10/token-kidnapping-windows-2008-poc.html