The Central application in i-GEN opLYNX before 2.01.9 allows remote attackers to bypass authentication via vectors involving the disabling of browser JavaScript support.
https://www.cisa.gov/news-events/ics-advisories/icsa-12-362-01
http://www.us-cert.gov/control_systems/pdf/ICSA-12-362-01.pdf