Earlier quoted context omitted.
Not the case. Once you enable root access - by 'testing' this - others can remotely & silently access the system as root. GP is right - don't encourage people to test this, as there's nothing to gain from it. If you're on a shared machine you need to mitigate. If you're on your own dedicated machine you need to not share it until this is fixed.
> others can remotely & silently access the system as root. They already can: https://gfycat.com/gifs/detail/sentimentalnaiveantelopegroun...
Source: Just tried it myself.