pclissold wrote:
It's not suitable for putting on a machine that's connected to the Internet - one mistake with the firewall and you're hacked for sure - and you're probably a goner anyway - it's got PHP in it without much attention to security.
As well, normal distribution packages get updated whenever a security hole is found. This wouldn't happen with xampp, you'd be left with an old insecure version. This is something you definitely do not want with apache/php, etc., as they are likely the most frequently targeted part of your system.