I think you're missing my point (and my poor wording probably didn't help).
A backdoor that requires physical access isn't a backdoor. If an attacker has such access, you're already screwed.
A backdoor that requires administrative privileges isn't a backdoor. If an attacker has such access, you're already screwed.
The so-called dev/test 'backdoor' really isn't a backdoor. It's a 'unlock' tool that's required for anyone who's going to engineer the device. My main beef is that this article appears to be re-branding the engineering unlock as a backdoor, and confusion is obviously ensuing.
Again, In my original post, I asked "What's the exploit"? and I understand that the existence of an exploit might not be the article's subject, but If you really think that there's a security problem here, I'll ask it again: "What's the exploit?"