- $query[] = "UPDATE msgrcpt SET rs = 'R' WHERE mail_id = '$mail_id'";
- } else if ($request == 'delete') {
- $query[] = "UPDATE msgrcpt SET rs = 'D' WHERE mail_id = '$mail_id'";
- } else {
- error("Unknown operation [$request]");
- exit;
- }
- $success = $DB->update($query);
- if (! $success) {
- error("Message not released, contact administrator [$query]");
- exit;
- }
- header('Location: index.php');
+ $query[] = "UPDATE msgrcpt SET rs = 'R' WHERE mail_id = '$mail_id'";
+ } else if ($request == 'delete') {
+ $query[] = "UPDATE msgrcpt SET rs = 'D' WHERE mail_id = '$mail_id'";
+ } else {
+ error("Unknown operation [$request]");
+ exit;
+ }
+ }
+
+ return $query;
+ }
+
+ $util = Utils::getInstance();
+ $loggedIn = $util->isLoggedIn();
+ $request = isset($_GET['op']) ? $_GET['op'] : '';
+ if ($loggedIn && isset($_GET['id'])) {
+ $ids = explode(',', $_GET['id']);
+ $query = handleRequest($request, $ids);
+ $success = $DB->update($query);
+ if (! $success) {
+ error("Message not released, contact administrator [$query]");
+ exit;
+ }
+ header('Location: index.php');