A client of mine would like to use contribute to edit files on my server. Doing
a bit of research I've found that contribute creates a file called
contribute.xml in the /_mm directory. This file contains a password and other
security information

Does anyone know the security implications of this?