It's not surprising that it works to me -- I think it's the intended behaviour.
The article suggests the fact that barcodes can contain arbitrary (non-printable) ascii characters is the discovery of a new vulnerability which can be used to attack a large number of real-world POS/airport check-in systems, but doesn't give a single example or proof for that. This seems like complete speculation on the presence of input handling bugs in systems connected to barcode scanners presented as a fact.