diff --git a/app/contacts/contact_import.php b/app/contacts/contact_import.php
index b0de34b49a..23e217a1a8 100644
--- a/app/contacts/contact_import.php
+++ b/app/contacts/contact_import.php
@@ -351,16 +351,16 @@
foreach($results as $row) {
echo "
\n";
echo " | \n";
- echo $row['FirstName'] ." ".$row['LastName'];
+ echo escape($row['FirstName'])." ".escape($row['LastName']);
echo " | \n";
echo " \n";
- echo $row['Company']." \n";
+ echo escape($row['Company'])." \n";
echo " | \n";
echo " \n";
- echo $row['EmailAddress']." \n";
+ echo escape($row['EmailAddress'])." \n";
echo " | \n";
echo " \n";
- echo $row['Web Page']." \n";
+ echo escape($row['Web Page'])." \n";
echo " | \n";
echo "
\n";
}