Improper access control in Azure API Management (APIM) allows an authorized attacker to execute code over a network.