Yeah i saw that.. then i found this..
Though the ApacheFriends people don't recommend XAMPP for production environments, I've run the latest XAMPP version in a production environment for the last six weeks without issue. Certainly It's not a be all and end all solution for a web serving stack though. XAMPP is missing some kind of easy to use Apache server configuration tool that would help to set up virtual servers. As well, on its own it's not really a completely secure solution as it does not include any sort of IDS (like SNORT for example) which is really an imperative in today's insecure internet.
http://www.linuxplanet.com/linuxplanet/reviews/5888/5/I wouldnt recommend a bank install this.. but i dont see how it would be any less secure than having the software installed seperate.. if you have decent passwords.. and it is running on a fairly protected machine..
I will have to look into the security.. my guess is that the webgui has alot to do with this.. but if you were to harden the server and adjust some of the permissions.. i dont see any reason that this couldnt be used.. If you are running a smoothwall or some type of hardware firewall device