WP Extension: WP-Manage This extension (or hack) for WordPress allows for backup and upgrade of WordPress from inside its own interface. I am not sure why it was not integrated into the WordPress admin though it does honor the WordPress user profile. It uses special Zip and Mysql backup backup classes from inside PHP and does not require the use or permission of passthu(). As an FYI (since my backup plugin had the vulnerability), the backup files created are still world readable and though the filenames are random, there is an element of risk involved. The upgrade feature, albeit cool, might be a bit dangerous if not coupled with the backup.
[Continue Reading...]