public function user_submited_review($iReviewId, $mode)
 {
     global $site_url, $COMPANY_NAME, $EMAIL_ADMIN, $GeneralObj, $SEO_FRIENDLY_UR;
     include_once $CFG->dirroot . "/lib/classes/" . 'application/User.Class.php5';
     include_once $CFG->dirroot . "/lib/classes/" . 'application/cinema_review.Class.php5';
     $code = 'REVIEW_SUBMITED';
     $sql_select = "SELECT * FROM system_email WHERE vEmailCode='" . $code . "' AND eStatus='Active'";
     $db_select = $this->obj->select($sql_select);
     $vEmailTitle = $db_select[0]["vEmailTitle"];
     $vFromName = $db_select[0]["vFromName"];
     $vFromEmail = $db_select[0]["vFromEmail"];
     $eEmailFormat = $db_select[0]["eEmailFormat"];
     $vEmailSubject = $db_select[0]["vEmailSubject"];
     $tEmailMessage = stripslashes($db_select[0]["tEmailMessage"]);
     $vEmailFooter = $db_select[0]["vEmailFooter"];
     $toEmail = $EMAIL_ADMIN;
     if (count($db_select) > 0) {
         $cinema_review_obj = new cinema_review();
         $db_review = $cinema_review_obj->select($iReviewId);
         $uObj = new User();
         $uObj->select($db_review[0]['iUserId']);
         $link = '<a href="' . $CFG->dirroot . 'index.php?file=c-cinema_reviewadd&mode=Update&iId=' . $iReviewId . '&iReviewId=' . $iReviewId . '" target="_new" >here</a>';
         $array = array('#USER_NAME#' => $uObj->getvFirstName() . ' ' . $uObj->getvLastName(), '#LINK#' => $link, '#ACTION#' => $mode);
         $tContent = str_replace(array_keys($array), array_values($array), $tEmailMessage);
         $status = $this->mail_mailMe($toEmail, $vEmailSubject, $tContent, $vFromEmail, $format, $cc, $bcc);
     }
 }
<?php

include_once "../../includes/include.php";
include_once $CFG->dirroot . "/lib/classes/" . 'application/cinema_review.Class.php5';
include_once $CFG->dirroot . "/lib/classes/" . 'xml/XML.Class.php5';
$cinema_review_obj = new cinema_review();
$xmlObj = new XML();
if ($_REQUEST['mode'] != "Delete") {
    $mode = "";
    $id = "";
    if (isset($_REQUEST['mode']) && !empty($_REQUEST['mode'])) {
        $mode = $_REQUEST['mode'];
    }
    if (isset($_REQUEST['id']) && !empty($_REQUEST['id'])) {
        $id = stripslashes($_REQUEST['id']);
    }
    $status = $cinema_review_obj->update_status($mode, $id);
    if ($status) {
        $msg = "Record updated successfully!";
    } else {
        $msg = "Record updation unsuccessfully!";
    }
} else {
    $status = $cinema_review_obj->delete(stripslashes($id));
    if ($status) {
        $msg = "Record deleted successfully!";
    } else {
        $msg = "Record deletion unsuccessfully!";
    }
}
echo $msg;