[phpBB Debug] PHP Warning: in file [ROOT]/includes/crs/crs_misc_functions.php on line 37: mime_content_type(): Empty filename or path
[phpBB Debug] PHP Warning: in file [ROOT]/includes/crs/crs_misc_functions.php on line 37: mime_content_type(): Empty filename or path
Zen Cart 源代码 reviews.php

Zen Cart 源代码 reviews.php




下载文件

文件名: reviews.php
文件类型: PHP文件
文件大小: 25.94 KiB
MD5: 33c5e3d6e13bab602cd3d3009da4230b

reviews.php - 关闭高亮
  1. <?php
  2. /**
  3.  * @package admin
  4.  * @copyright Copyright 2003-2011 Zen Cart Development Team
  5.  * @copyright Portions Copyright 2003 osCommerce
  6.  * @license http://www.zen-cart.com/license/2_0.txt GNU Public License V2.0
  7.  * @version $Id: reviews.php 19330 2011-08-07 06:32:56Z drbyte $
  8.  */
  9.  
  10.   require('includes/application_top.php');
  11.  
  12.   $action = (isset($_GET['action']) ? $_GET['action'] : '');
  13.   $status_filter = (isset($_GET['status']) ? $_GET['status'] : '');
  14.   $status_list[] = array('id' => 1, 'text' => TEXT_PENDING_APPROVAL);
  15.   $status_list[] = array('id' => 2, 'text' => TEXT_APPROVED);
  16.  
  17.   if (zen_not_null($action)) {
  18.     switch ($action) {
  19.       case 'setflag':
  20.         if (isset($_POST['flag']) && ($_POST['flag'] == 1 || $_POST['flag'] == 0))
  21.         {
  22.           zen_set_reviews_status($_GET['rID'], $_POST['flag']);
  23.         }
  24.         zen_redirect(zen_href_link(FILENAME_REVIEWS, (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] . '&' : '') . 'rID=' . $_GET['rID'], 'NONSSL'));
  25.         break;
  26.       case 'update':
  27.         $reviews_id = zen_db_prepare_input($_GET['rID']);
  28.         $reviews_rating = zen_db_prepare_input($_POST['reviews_rating']);
  29.         $reviews_text = zen_db_prepare_input($_POST['reviews_text']);
  30.  
  31.         $db->Execute("update " . TABLE_REVIEWS . "
  32.                      set reviews_rating = '" . zen_db_input($reviews_rating) . "',
  33.                      last_modified = now() where reviews_id = '" . (int)$reviews_id . "'");
  34.  
  35.         $db->Execute("update " . TABLE_REVIEWS_DESCRIPTION . "
  36.                      set reviews_text = '" . zen_db_input($reviews_text) . "'
  37.                      where reviews_id = '" . (int)$reviews_id . "'");
  38.  
  39.         zen_redirect(zen_href_link(FILENAME_REVIEWS, (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] . '&' : '') . 'rID=' . $_GET['rID']));
  40.         break;
  41.       case 'deleteconfirm':
  42.         // demo active test
  43.         if (zen_admin_demo()) {
  44.           $_GET['action']= '';
  45.           $messageStack->add_session(ERROR_ADMIN_DEMO, 'caution');
  46.           zen_redirect(zen_href_link(FILENAME_REVIEWS, (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] : '')));
  47.         }
  48.         $reviews_id = zen_db_prepare_input($_POST['rID']);
  49.  
  50.         $db->Execute("delete from " . TABLE_REVIEWS . "
  51.                      where reviews_id = '" . (int)$reviews_id . "'");
  52.  
  53.         $db->Execute("delete from " . TABLE_REVIEWS_DESCRIPTION . "
  54.                      where reviews_id = '" . (int)$reviews_id . "'");
  55.  
  56.  
  57.         zen_redirect(zen_href_link(FILENAME_REVIEWS, (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] : '')));
  58.         break;
  59.     }
  60.   }
  61. ?>
  62. <!doctype html public "-//W3C//DTD HTML 4.01 Transitional//EN">
  63. <html <?php echo HTML_PARAMS; ?>>
  64. <head>
  65. <meta http-equiv="Content-Type" content="text/html; charset=<?php echo CHARSET; ?>">
  66. <title><?php echo TITLE; ?></title>
  67. <link rel="stylesheet" type="text/css" href="includes/stylesheet.css">
  68. <link rel="stylesheet" type="text/css" href="includes/cssjsmenuhover.css" media="all" id="hoverJS">
  69. <script language="javascript" src="includes/menu.js"></script>
  70. <script language="javascript" src="includes/general.js"></script>
  71. <script type="text/javascript">
  72.   <!--
  73.   function init()
  74.   {
  75.     cssjsmenu('navbar');
  76.     if (document.getElementById)
  77.     {
  78.       var kill = document.getElementById('hoverJS');
  79.       kill.disabled = true;
  80.     }
  81.   }
  82.   // -->
  83. </script>
  84. </head>
  85. <body onLoad="init()">
  86. <!-- header //-->
  87. <?php require(DIR_WS_INCLUDES . 'header.php'); ?>
  88. <!-- header_eof //-->
  89.  
  90. <!-- body //-->
  91. <table border="0" width="100%" cellspacing="2" cellpadding="2">
  92.   <tr>
  93. <!-- body_text //-->
  94.     <td width="100%" valign="top"><table border="0" width="100%" cellspacing="0" cellpadding="2">
  95.       <tr>
  96.         <td><table border="0" width="100%" cellspacing="0" cellpadding="0">
  97.          <tr><?php echo zen_draw_form('search', FILENAME_REVIEWS, '', 'get'); ?>
  98.             <td class="pageHeading"><?php echo HEADING_TITLE; ?></td>
  99.             <td class="pageHeading" align="right"><?php echo zen_draw_separator('pixel_trans.gif', 1, HEADING_IMAGE_HEIGHT); ?></td>
  100.             <td class="smallText" align="right">
  101. <?php
  102. // show reset search
  103.   if (isset($_GET['search']) && zen_not_null($_GET['search'])) {
  104.     echo '<a href="' . zen_href_link(FILENAME_REVIEWS) . '">' . zen_image_button('button_reset.gif', IMAGE_RESET) . '</a>&nbsp;&nbsp;';
  105.   }
  106.   echo HEADING_TITLE_SEARCH_DETAIL . ' ' . zen_draw_input_field('search') . zen_hide_session_id();
  107.   if (isset($_GET['search']) && zen_not_null($_GET['search'])) {
  108.     $keywords = zen_db_input(zen_db_prepare_input($_GET['search']));
  109.     echo '<br/ >' . TEXT_INFO_SEARCH_DETAIL_FILTER . $keywords;
  110.   }
  111. ?>
  112.             </td>
  113.           </form></tr>
  114.               <tr><?php echo zen_draw_form('status', FILENAME_REVIEWS, '', 'get', '', true); ?>
  115.                 <td class="smallText" colspan="3" align="right">
  116.                   <?php
  117.                     echo HEADING_TITLE_STATUS . ' ' . zen_draw_pull_down_menu('status', array_merge(array(array('id' => '', 'text' => TEXT_ALL_STATUS)), $status_list), $status_filter, 'onChange="this.form.submit();"');
  118.                     echo zen_hide_session_id();
  119.                  ?>
  120.                 </td>
  121.               </form></tr>
  122.         </table></td>
  123.       </tr>
  124. <?php
  125.   if ($action == 'edit') {
  126.     $rID = zen_db_prepare_input($_GET['rID']);
  127.  
  128.     $reviews = $db->Execute("select r.reviews_id, r.products_id, r.customers_name, r.date_added,
  129.                                    r.last_modified, r.reviews_read, rd.reviews_text, r.reviews_rating
  130.                             from " . TABLE_REVIEWS . " r, " . TABLE_REVIEWS_DESCRIPTION . " rd
  131.                             where r.reviews_id = '" . (int)$rID . "' and r.reviews_id = rd.reviews_id");
  132.  
  133.     $products = $db->Execute("select products_image
  134.                              from " . TABLE_PRODUCTS . "
  135.                              where products_id = '" . (int)$reviews->fields['products_id'] . "'");
  136.  
  137.     $products_name = $db->Execute("select products_name
  138.                                   from " . TABLE_PRODUCTS_DESCRIPTION . "
  139.                                   where products_id = '" . (int)$reviews->fields['products_id'] . "'
  140.                                   and language_id = '" . (int)$_SESSION['languages_id'] . "'");
  141.  
  142.     $rInfo_array = array_merge($reviews->fields, $products->fields, $products_name->fields);
  143.     $rInfo = new objectInfo($rInfo_array);
  144. ?>
  145.       <tr><?php echo zen_draw_form('review', FILENAME_REVIEWS, (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] . '&' : '') . 'rID=' . $_GET['rID'] . '&action=preview'); ?>
  146.         <td><table border="0" width="100%" cellspacing="0" cellpadding="0">
  147.           <tr>
  148.             <td class="main" valign="top"><b><?php echo ENTRY_PRODUCT; ?></b> <?php echo $rInfo->products_name; ?><br><b><?php echo ENTRY_FROM; ?></b> <?php echo $rInfo->customers_name; ?><br><br><b><?php echo ENTRY_DATE; ?></b> <?php echo zen_date_short($rInfo->date_added); ?></td>
  149.             <td class="main" align="right" valign="top"><?php echo zen_info_image($rInfo->products_image, $rInfo->products_name, SMALL_IMAGE_WIDTH, SMALL_IMAGE_HEIGHT); ?></td>
  150.           </tr>
  151.         </table></td>
  152.       </tr>
  153.       <tr>
  154.         <td><table width="100%" border="0" cellspacing="0" cellpadding="0">
  155.           <tr>
  156.             <td class="main" valign="top"><b><?php echo ENTRY_REVIEW; ?></b><br><br><?php echo zen_draw_textarea_field('reviews_text', 'soft', '70', '15', htmlspecialchars(stripslashes($rInfo->reviews_text), ENT_COMPAT, CHARSET, TRUE)); ?></td>
  157.           </tr>
  158.           <tr>
  159.             <td class="smallText" align="right"><?php echo ENTRY_REVIEW_TEXT; ?></td>
  160.           </tr>
  161.         </table></td>
  162.       </tr>
  163.       <tr>
  164.         <td><?php echo zen_draw_separator('pixel_trans.gif', '1', '10'); ?></td>
  165.       </tr>
  166.       <tr>
  167.         <td class="main"><b><?php echo ENTRY_RATING; ?></b>&nbsp;<?php echo TEXT_BAD; ?>&nbsp;<?php for ($i=1; $i<=5; $i++) echo zen_draw_radio_field('reviews_rating', $i, '', $rInfo->reviews_rating) . '&nbsp;'; echo TEXT_GOOD; ?></td>
  168.       </tr>
  169.       <tr>
  170.         <td><?php echo zen_draw_separator('pixel_trans.gif', '1', '10'); ?></td>
  171.       </tr>
  172.       <tr>
  173.         <td align="right" class="main"><?php echo zen_draw_hidden_field('reviews_id', $rInfo->reviews_id) . zen_draw_hidden_field('products_id', $rInfo->products_id) . zen_draw_hidden_field('customers_name', $rInfo->customers_name) . zen_draw_hidden_field('products_name', $rInfo->products_name) . zen_draw_hidden_field('products_image', $rInfo->products_image) . zen_draw_hidden_field('date_added', $rInfo->date_added) . zen_image_submit('button_preview.gif', IMAGE_PREVIEW) . ' <a href="' . zen_href_link(FILENAME_REVIEWS, (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] . '&' : '') . 'rID=' . $_GET['rID']) . '">' . zen_image_button('button_cancel.gif', IMAGE_CANCEL) . '</a>'; ?></td>
  174.       </form></tr>
  175. <?php
  176.   } elseif ($action == 'preview') {
  177.     if (zen_not_null($_POST)) {
  178.       $rInfo = new objectInfo($_POST);
  179.     } else {
  180.       $rID = zen_db_prepare_input($_GET['rID']);
  181.  
  182.       $reviews = $db->Execute("select r.reviews_id, r.products_id, r.customers_name, r.date_added,
  183.                                      r.last_modified, r.reviews_read, rd.reviews_text,
  184.                                      r.reviews_rating
  185.                               from " . TABLE_REVIEWS . " r, " . TABLE_REVIEWS_DESCRIPTION . " rd
  186.                               where r.reviews_id = '" . (int)$rID . "'
  187.                               and r.reviews_id = rd.reviews_id");
  188.  
  189.       $products = $db->Execute("select products_image
  190.                                from " . TABLE_PRODUCTS . "
  191.                                where products_id = '" . (int)$reviews->fields['products_id'] . "'");
  192.  
  193.       $products_name = $db->Execute("select products_name
  194.                                     from " . TABLE_PRODUCTS_DESCRIPTION . "
  195.                                     where products_id = '" . (int)$reviews->fields['products_id'] . "'
  196.                                     and language_id = '" . (int)$_SESSION['languages_id'] . "'");
  197.  
  198.       $rInfo_array = array_merge($reviews->fields, $products->fields, $products_name->fields);
  199.       $rInfo = new objectInfo($rInfo_array);
  200.     }
  201. ?>
  202.       <tr><?php echo zen_draw_form('update', FILENAME_REVIEWS, (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] . '&' : '') . 'rID=' . $_GET['rID'] . '&action=update', 'post', 'enctype="multipart/form-data"'); ?>
  203.         <td><table border="0" width="100%" cellspacing="0" cellpadding="0">
  204.           <tr>
  205.             <td class="main" valign="top"><b><?php echo ENTRY_PRODUCT; ?></b> <?php echo $rInfo->products_name; ?><br><b><?php echo ENTRY_FROM; ?></b> <?php echo $rInfo->customers_name; ?><br><br><b><?php echo ENTRY_DATE; ?></b> <?php echo zen_date_short($rInfo->date_added); ?></td>
  206.             <td class="main" align="right" valign="top"><?php echo zen_info_image($rInfo->products_image, $rInfo->products_name, SMALL_IMAGE_WIDTH, SMALL_IMAGE_HEIGHT); ?></td>
  207.           </tr>
  208.         </table>
  209.       </tr>
  210.       <tr>
  211.         <td><table width="100%" border="0" cellspacing="0" cellpadding="0">
  212.           <tr>
  213.             <td valign="top" class="main"><b><?php echo ENTRY_REVIEW; ?></b><br><br><?php echo nl2br(zen_db_output(zen_break_string($rInfo->reviews_text, 15))); ?></td>
  214.           </tr>
  215.         </table></td>
  216.       </tr>
  217.       <tr>
  218.         <td><?php echo zen_draw_separator('pixel_trans.gif', '1', '10'); ?></td>
  219.       </tr>
  220.       <tr>
  221.         <td class="main"><b><?php echo ENTRY_RATING; ?></b>&nbsp;<?php echo zen_image(DIR_WS_TEMPLATE_IMAGES . 'stars_' . $rInfo->reviews_rating . '.gif', sprintf(TEXT_OF_5_STARS, $rInfo->reviews_rating)); ?>&nbsp;<small>[<?php echo sprintf(TEXT_OF_5_STARS, $rInfo->reviews_rating); ?>]</small></td>
  222.       </tr>
  223.       <tr>
  224.         <td><?php echo zen_draw_separator('pixel_trans.gif', '1', '10'); ?></td>
  225.       </tr>
  226. <?php
  227.     if (zen_not_null($_POST)) {
  228. /* Re-Post all POST'ed variables */
  229.       reset($_POST);
  230.       while(list($key, $value) = each($_POST)) echo zen_draw_hidden_field($key, $value);
  231. ?>
  232.       <tr>
  233.         <td align="right" class="smallText"><?php echo '<a href="' . zen_href_link(FILENAME_REVIEWS, (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] . '&' : '') . 'rID=' . $rInfo->reviews_id . '&action=edit') . '">' . zen_image_button('button_back.gif', IMAGE_BACK) . '</a> ' . zen_image_submit('button_update.gif', IMAGE_UPDATE) . ' <a href="' . zen_href_link(FILENAME_REVIEWS, (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] . '&' : '') . 'rID=' . $rInfo->reviews_id) . '">' . zen_image_button('button_cancel.gif', IMAGE_CANCEL) . '</a>'; ?></td>
  234.       </form></tr>
  235. <?php
  236.     } else {
  237.       if (isset($_GET['origin'])) {
  238.         $back_url = $_GET['origin'];
  239.         $back_url_params = '';
  240.       } else {
  241.         $back_url = FILENAME_REVIEWS;
  242.         $back_url_params = (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] . '&' : '') . 'rID=' . $rInfo->reviews_id;
  243.       }
  244. ?>
  245.       <tr>
  246.         <td align="right"><?php echo '<a href="' . zen_href_link($back_url, $back_url_params, 'NONSSL') . '">' . zen_image_button('button_back.gif', IMAGE_BACK) . '</a>'; ?></td>
  247.       </tr>
  248. <?php
  249.     }
  250.   } else {
  251. ?>
  252.       <tr>
  253.         <td><table border="0" width="100%" cellspacing="0" cellpadding="0">
  254.           <tr>
  255.             <td valign="top"><table border="0" width="100%" cellspacing="0" cellpadding="2">
  256.               <tr class="dataTableHeadingRow">
  257.                 <td class="dataTableHeadingContent"><?php echo TABLE_HEADING_PRODUCTS; ?></td>
  258.                 <td class="dataTableHeadingContent"><?php echo TABLE_HEADING_CUSTOMER_NAME; ?></td>
  259.                 <td class="dataTableHeadingContent" align="right"><?php echo TABLE_HEADING_RATING; ?></td>
  260.                 <td class="dataTableHeadingContent" align="right"><?php echo TABLE_HEADING_DATE_ADDED; ?></td>
  261.                 <td class="dataTableHeadingContent" align="center"><?php echo TABLE_HEADING_STATUS; ?></td>
  262.                 <td class="dataTableHeadingContent" align="right"><?php echo TABLE_HEADING_ACTION; ?>&nbsp;</td>
  263.               </tr>
  264. <?php
  265.  
  266. // create search filter
  267.     $search = '';
  268.     if (isset($_GET['search']) && zen_not_null($_GET['search'])) {
  269.       $keywords = zen_db_input(zen_db_prepare_input($_GET['search']));
  270.       $search = " and r.customers_name like '%" . $keywords . "%' or rd.reviews_text like '%" . $keywords . "%' or pd.products_name like '%" . $keywords . "%' or pd.products_description like '%" . $keywords . "%' or p.products_model like '%" . $keywords . "%'";
  271.     }
  272.  
  273.     if ($status_filter !='' && $status_filter >0) $search .= " and r.status=" . ((int)$status_filter-1) . " ";
  274.  
  275.     $order_by = " order by pd.products_name";
  276.  
  277.     $reviews_query_raw = ("select r.*, rd.*, pd.*, p.* from (" . TABLE_REVIEWS . " r left join " . TABLE_REVIEWS_DESCRIPTION . " rd on r.reviews_id = rd.reviews_id left join " . TABLE_PRODUCTS_DESCRIPTION . " pd on r.products_id = pd.products_id and pd.language_id ='" . (int)$_SESSION['languages_id'] . "' left join " . TABLE_PRODUCTS . " p on p.products_id= r.products_id) " . " where r.products_id = p.products_id " . $search . $order_by);
  278.  
  279. // reset page when page is unknown
  280. if (($_GET['page'] == '' or $_GET['page'] == '1') and $_GET['rID'] != '') {
  281.   $check_page = $db->Execute($reviews_query_raw);
  282.   $check_count=1;
  283.   if ($check_page->RecordCount() > MAX_DISPLAY_SEARCH_RESULTS) {
  284.     while (!$check_page->EOF) {
  285.       if ($check_page->fields['reviews_id'] == $_GET['rID']) {
  286.         break;
  287.       }
  288.       $check_count++;
  289.       $check_page->MoveNext();
  290.     }
  291.     $_GET['page'] = round((($check_count/MAX_DISPLAY_SEARCH_RESULTS)+(fmod_round($check_count,MAX_DISPLAY_SEARCH_RESULTS) !=0 ? .5 : 0)),0);
  292.   } else {
  293.     $_GET['page'] = 1;
  294.   }
  295. }
  296.  
  297. //    $reviews_query_raw = "select reviews_id, products_id, date_added, last_modified, reviews_rating, status from " . TABLE_REVIEWS . " order by date_added DESC";
  298.     $reviews_split = new splitPageResults($_GET['page'], MAX_DISPLAY_SEARCH_RESULTS, $reviews_query_raw, $reviews_query_numrows);
  299.     $reviews = $db->Execute($reviews_query_raw);
  300.     while (!$reviews->EOF) {
  301.       if ((!isset($_GET['rID']) || (isset($_GET['rID']) && ($_GET['rID'] == $reviews->fields['reviews_id']))) && !isset($rInfo)) {
  302.         $reviews_text = $db->Execute("select r.reviews_read, r.customers_name,
  303.                                             length(rd.reviews_text) as reviews_text_size
  304.                                      from " . TABLE_REVIEWS . " r, " . TABLE_REVIEWS_DESCRIPTION . " rd
  305.                                      where r.reviews_id = '" . (int)$reviews->fields['reviews_id'] . "'
  306.                                      and r.reviews_id = rd.reviews_id");
  307.  
  308.         $products_image = $db->Execute("select products_image
  309.                                        from " . TABLE_PRODUCTS . "
  310.                                        where products_id = '" . (int)$reviews->fields['products_id'] . "'");
  311.  
  312.  
  313.         $products_name = $db->Execute("select products_name
  314.                                       from " . TABLE_PRODUCTS_DESCRIPTION . "
  315.                                       where products_id = '" . (int)$reviews->fields['products_id'] . "'
  316.                                       and language_id = '" . (int)$_SESSION['languages_id'] . "'");
  317.  
  318.         $reviews_average = $db->Execute("select (avg(reviews_rating) / 5 * 100) as average_rating
  319.                                         from " . TABLE_REVIEWS . "
  320.                                         where products_id = '" . (int)$reviews->fields['products_id'] . "'");
  321.  
  322.         $review_info = array_merge($reviews_text->fields, $reviews_average->fields, $products_name->fields);
  323.         $rInfo_array = array_merge($reviews->fields, $review_info, $products_image->fields);
  324.         $rInfo = new objectInfo($rInfo_array);
  325.       }
  326.  
  327.       if (isset($rInfo) && is_object($rInfo) && ($reviews->fields['reviews_id'] == $rInfo->reviews_id) ) {
  328.         echo '              <tr id="defaultSelected" class="dataTableRowSelected" onmouseover="rowOverEffect(this)" onmouseout="rowOutEffect(this)" onclick="document.location.href=\'' . zen_href_link(FILENAME_REVIEWS, (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] . '&' : '') . 'rID=' . $rInfo->reviews_id . '&action=preview') . '\'">' . "\n";
  329.       } else {
  330.         echo '              <tr class="dataTableRow" onmouseover="rowOverEffect(this)" onmouseout="rowOutEffect(this)" onclick="document.location.href=\'' . zen_href_link(FILENAME_REVIEWS, (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] . '&' : '') . 'rID=' . $reviews->fields['reviews_id']) . '\'">' . "\n";
  331.       }
  332. ?>
  333.                 <td class="dataTableContent"><?php echo '<a href="' . zen_href_link(FILENAME_REVIEWS, (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] . '&' : '') . 'rID=' . $reviews->fields['reviews_id'] . '&action=preview') . '">' . zen_image(DIR_WS_ICONS . 'preview.gif', ICON_PREVIEW) . '</a>&nbsp;' . zen_get_products_name($reviews->fields['products_id']); ?></td>
  334.                 <td class="dataTableContent"><?php echo $reviews->fields['customers_name']; ?></td>
  335.                 <td class="dataTableContent" align="right"><?php echo zen_image(DIR_WS_TEMPLATE_IMAGES . 'stars_' . $reviews->fields['reviews_rating'] . '.gif'); ?></td>
  336.                 <td class="dataTableContent" align="right"><?php echo zen_date_short($reviews->fields['date_added']); ?></td>
  337.                 <td  class="dataTableContent" align="center">
  338. <?php
  339.       if ($reviews->fields['status'] == '1') {
  340.         echo zen_draw_form('setflag_products', FILENAME_REVIEWS, 'action=setflag&rID=' . $reviews->fields['reviews_id'] . (isset($_GET['page']) ? '&page=' . $_GET['page'] : ''));?>
  341.         <input type="image" src="<?php echo DIR_WS_IMAGES ?>icon_green_on.gif" title="<?php echo IMAGE_ICON_STATUS_ON; ?>" />
  342.         <input type="hidden" name="flag" value="0" />
  343.         </form>
  344. <?php
  345.       } else {
  346.         echo zen_draw_form('setflag_products', FILENAME_REVIEWS, 'action=setflag&rID=' . $reviews->fields['reviews_id'] . (isset($_GET['page']) ? '&page=' . $_GET['page'] : ''));?>
  347.         <input type="image" src="<?php echo DIR_WS_IMAGES ?>icon_red_on.gif" title="<?php echo IMAGE_ICON_STATUS_OFF; ?>" />
  348.         <input type="hidden" name="flag" value="1" />
  349.         </form>
  350. <?php
  351.       }
  352. ?>
  353.                 </td>
  354.                 <td class="dataTableContent" align="right"><?php if ( (is_object($rInfo)) && ($reviews->fields['reviews_id'] == $rInfo->reviews_id) ) { echo zen_image(DIR_WS_IMAGES . 'icon_arrow_right.gif'); } else { echo '<a href="' . zen_href_link(FILENAME_REVIEWS, (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] . '&' : '') . 'rID=' . $reviews->fields['reviews_id']) . '">' . zen_image(DIR_WS_IMAGES . 'icon_info.gif', IMAGE_ICON_INFO) . '</a>'; } ?>&nbsp;</td>
  355.               </tr>
  356. <?php
  357.       $reviews->MoveNext();
  358.     }
  359. ?>
  360.               <tr>
  361.                 <td colspan="6"><table border="0" width="100%" cellspacing="0" cellpadding="2">
  362.                   <tr>
  363.                     <td class="smallText" valign="top"><?php echo $reviews_split->display_count($reviews_query_numrows, MAX_DISPLAY_SEARCH_RESULTS, $_GET['page'], TEXT_DISPLAY_NUMBER_OF_REVIEWS); ?></td>
  364.                     <td class="smallText" align="right"><?php echo $reviews_split->display_links($reviews_query_numrows, MAX_DISPLAY_SEARCH_RESULTS, MAX_DISPLAY_PAGE_LINKS, $_GET['page'], zen_get_all_get_params( array( 'page', 'rID' ))); ?></td>
  365.                   </tr>
  366.                 </table></td>
  367.               </tr>
  368.             </table></td>
  369. <?php
  370.     $heading = array();
  371.     $contents = array();
  372.  
  373.     switch ($action) {
  374.       case 'delete':
  375.         $heading[] = array('text' => '<b>' . TEXT_INFO_HEADING_DELETE_REVIEW . '</b>');
  376.  
  377.         $contents = array('form' => zen_draw_form('reviews', FILENAME_REVIEWS, (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] . '&' : '') . 'action=deleteconfirm') . zen_draw_hidden_field('rID', $rInfo->reviews_id));
  378.         $contents[] = array('text' => TEXT_INFO_DELETE_REVIEW_INTRO);
  379.         $contents[] = array('text' => '<br><b>' . $rInfo->products_name . '</b>');
  380.         $contents[] = array('align' => 'center', 'text' => '<br>' . zen_image_submit('button_delete.gif', IMAGE_DELETE) . ' <a href="' . zen_href_link(FILENAME_REVIEWS, (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] . '&' : '') . 'rID=' . $rInfo->reviews_id) . '">' . zen_image_button('button_cancel.gif', IMAGE_CANCEL) . '</a>');
  381.         break;
  382.       default:
  383.       if (isset($rInfo) && is_object($rInfo)) {
  384.         $heading[] = array('text' => '<b>' . $rInfo->products_name . '</b>');
  385.  
  386.         $contents[] = array('align' => 'center', 'text' => '<a href="' . zen_href_link(FILENAME_REVIEWS, (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] . '&' : '') . 'rID=' . $rInfo->reviews_id . '&action=edit') . '">' . zen_image_button('button_edit.gif', IMAGE_EDIT) . '</a> <a href="' . zen_href_link(FILENAME_REVIEWS, (isset($_GET['page']) ? 'page=' . $_GET['page'] . '&' : '') . (isset($_GET['status']) ? 'status=' . $_GET['status'] . '&' : '') . 'rID=' . $rInfo->reviews_id . '&action=delete') . '">' . zen_image_button('button_delete.gif', IMAGE_DELETE) . '</a> ' . ' <a href="' . zen_href_link(FILENAME_CATEGORIES, 'cPath=' . zen_get_products_category_id($rInfo->products_id) . '&pID=' . $rInfo->products_id) . '">' . zen_image_button('button_details.gif', IMAGE_DETAILS) . '</a>');
  387.         $contents[] = array('text' => '<br>' . TEXT_INFO_DATE_ADDED . ' ' . zen_date_short($rInfo->date_added));
  388.         if (zen_not_null($rInfo->last_modified)) $contents[] = array('text' => TEXT_INFO_LAST_MODIFIED . ' ' . zen_date_short($rInfo->last_modified));
  389.         $contents[] = array('text' => '<br>' . zen_info_image($rInfo->products_image, $rInfo->products_name, SMALL_IMAGE_WIDTH, SMALL_IMAGE_HEIGHT));
  390.         $contents[] = array('text' => '<br>' . TEXT_INFO_REVIEW_AUTHOR . ' ' . $rInfo->customers_name);
  391.         $contents[] = array('text' => TEXT_INFO_REVIEW_RATING . ' ' . zen_image(DIR_WS_TEMPLATE_IMAGES . 'stars_' . $rInfo->reviews_rating . '.gif'));
  392.         $contents[] = array('text' => TEXT_INFO_REVIEW_READ . ' ' . $rInfo->reviews_read);
  393.         $contents[] = array('text' => '<br>' . TEXT_INFO_REVIEW_SIZE . ' ' . $rInfo->reviews_text_size . ' bytes');
  394.         $contents[] = array('text' => '<br>' . TEXT_INFO_PRODUCTS_AVERAGE_RATING . ' ' . number_format($rInfo->average_rating, 2) . '%');
  395.       }
  396.         break;
  397.     }
  398.  
  399.     if ( (zen_not_null($heading)) && (zen_not_null($contents)) ) {
  400.       echo '            <td width="25%" valign="top">' . "\n";
  401.  
  402.       $box = new box;
  403.       echo $box->infoBox($heading, $contents);
  404.  
  405.       echo '            </td>' . "\n";
  406.     }
  407. ?>
  408.           </tr>
  409.         </table></td>
  410.       </tr>
  411. <?php
  412.   }
  413. ?>
  414.     </table></td>
  415. <!-- body_text_eof //-->
  416.   </tr>
  417. </table>
  418. <!-- body_eof //-->
  419.  
  420. <!-- footer //-->
  421. <?php require(DIR_WS_INCLUDES . 'footer.php'); ?>
  422. <!-- footer_eof //-->
  423. <br>
  424. </body>
  425. </html>
  426. <?php require(DIR_WS_INCLUDES . 'application_bottom.php'); ?>
  427.