My Contacts Backup Pro 2.0.1 Command Injection / XSS

My Contacts Backup Pro version 2.0.1 suffers from command injection and cross site scripting vulnerabilities.