ABCDEFGHIJKLMNOPQRSTUVWXYZ
1
Pwn2Own Toronto 2022 Results
2
Published : https://t.me/onhex_ir Source : https://www.zerodayinitiative.com
3
DayTeamTargetcategoryvulnResultMOP$(K)
4
1NettitudeCanon imageCLASS MF743CdwPrinterStack Buffer OverflowSUCCESS220
5
1Qrious SecureTP-Link AX1800Router
authentication bypass + Command injectiong
SUCCESS220
6
1Horizon3 AILexmark MC3224iPrinterCommand injectiongSUCCESS220
7
1Gaurav BaruahSynology RT6600ax-WANRouterCommand injectiongSUCCESS220
8
1Interrupt LabsHP Color LaserJet Pro M479fdwPrinterStack Buffer OverflowSUCCESS220
9
1STAR LabsSamsung Galaxy S22Mobileimproper input validationSUCCESS520
10
1QuarkslabNETGEAR RAX30 AX2400RouterN/AWITHDRAWN-0.50
11
1ComputestSynology RT6600ax-LANRouterCommand injectiongSUCCESS15
12
1PHPHooligans
NETGEAR router + Lexmark printer
SOHO SMASHUPN/AFAILURE00
13
1ChimSamsung Galaxy S22Mobileimproper input validationSUCCESS525
14
1Interrupt LabsNETGEAR RAX30 AX2400-LANRouterSQL injection + command injectionSUCCESS15
15
1TenableTP-Link AX1800_LANRouterN/AFAILURE00
16
1DEVCOREMikrotik router and Canon printerSOHO SMASHUPStack Buffer OverflowSUCCESS10100
17
1Claroty ResearchSynology DiskStation DS920+NAS
Missing Auth for Critical Function + Auth Bypass
SUCCESS440
18
1NCC Group EDGTP-Link AX1800-LANRouterN/AWITHDRAWN-0.50
19
1Team ViettelHP Color LaserJet Pro M479fdwPrinterCommand injectiongSUCCESS210
20
1ASU SEFCOMSynology DiskStation DS920+NASOOB Write
BUG COLLISION
210
21
1Claroty ResearchNETGEAR RAX30 AX2400-LANRouterN/ASUCCESS12.5
22
1NCC Group EDGSynology RT6600ax-LANRouterCommand injectiong
BUG COLLISION
0.51250
23
1Neodyme
NETGEAR router and an HP printer
SOHO SMASHUPN/ASUCCESS1050
24
1Qrious SecureNETGEAR RAX30 AX2400-LANRouterN/A
BUG COLLISION
0.51250
25
2
ANHTUD Information Security Department
HP Color LaserJet Pro M479fdwPrinterStack Buffer OverflowSUCCESS210
26
2PHPHooligansNETGEAR RAX30 AX2400-WANRouterN/A
BUG COLLISION
110
27
2BugscaleSynology router and HP PrinterSOHO SMASHUPN/A
SUCCESS + BUG COLLISION
7.537500
28
2Qrious SecureSonos One SpeakerSmart SpeakerN/ASUCCESS660
29
2Team ViettelTP-Link AX1800-LANRouterCommand injectiongSUCCESS15
30
2Le Tran Hai TungCanon imageCLASS MF743CdwPrinterOOB WriteSUCCESS210
31
2SynacktivLexmark MC3224iPrinterCommand injectiongSUCCESS210
32
2STAR LabsSonos One SpeakerSmart SpeakerN/A
SUCCESS + BUG COLLISION
4.522,500
33
2Summoning TeamSynology RT6600ax-LANRouterCommand injectiong
BUG COLLISION
0.51.25
34
2NCC Group EDGNETGEAR RAX30 AX2400-WANRouterN/A
SUCCESS + BUG COLLISION
1.57.5
35
2Team ViettelCanon imageCLASS MF743CdwPrinterStack Buffer OverflowSUCCESS210
36
2NCC Group EDGLexmark MC3224iPrinterCommand injectiongSUCCESS210
37
2Qrious Secure
NETGEAR router + Western Digital NAS
SOHO SMASHUPN/AFAILURE00
38
2DEVCOREHP Color LaserJet Pro M479fdwPrinterStack Buffer Overflow
BUG COLLISION
15
39
2Ledger DonjonTP-Link AX1800-WANRouterN/AWITHDRAWN-10
40
2DEVCORECanon imageCLASS MF743CdwPrinterheap buffer overflowSUCCESS210
41
2Luca MOROWD My Cloud Pro Series PR4100NASClassic Buffer OverflowSUCCESS440
42
2Interrupt LabsSamsung Galaxy S22Mobileimproper input validationSUCCESS525
43
2BugscaleNETGEAR RAX30 AX2400-WANRouterN/AFAILURE00
44
2Aleksei StafeevLexmark MC3224iPrinterN/A
SUCCESS + BUG COLLISION
1.57.5
45
3Team ViettelWD My Cloud Pro Series PR4100NASOS Command InjectionSUCCESS420
46
3STAR Labs
Synology router and the Canon printer
SOHO SMASHUPN/A
BUG COLLISION
525
47
3Bun Bo Ong ChiCanon imageCLASS MF743CdwPrinterStack Buffer OverflowSUCCESS210
48
3DEVCORESonos One SpeakerSmart Speakerstack buffer overflow + OOB Read
SUCCESS + BUG COLLISION
4.522.5
49
3Qrious SecureSamsung Galaxy S22MobileN/AFAILURE00
50
3Team Viettel
Cisco router and the Canon printer
SOHO SMASHUPN/A
SUCCESS + BUG COLLISION
7.537.5
51
3Pentest LimitedWD My Cloud Pro Series PR4100NAS
OS command injection + SSRF + uncontrolled resource consumption
SUCCESS420
52
3Peter GeisslerCanon imageCLASS MF743CdwPrinterN/A
BUG COLLISION
15
53
3Qrious SecureNETGEAR RAX30 AX2400-WANRouterN/A
SUCCESS + BUG COLLISION
1.758.5
54
3NeodymeNETGEAR RAX30 AX2400-WANRouterN/AFAILURE00
55
3Pentest LimitedSamsung Galaxy S22MobileImproper Input ValidationSUCCESS525
56
3R-SECCanon imageCLASS MF743CdwPrinterStack Buffer OverflowSUCCESS210
57
3NCC Group EDGUbiquiti and the Lexmark printerSOHO SMASHUPcommand injection + type confusionSUCCESS1050
58
3Claroty ResearchWD My Cloud Pro Series PR4100NASN/ASUCCESS420
59
4QuarkslabNETGEAR RAX30 AX2400-WANRouterN/AFAILURE00
60
4Peter GeisslerLexmark MC3224iPrinterN/AFAILURE00
61
4NCC Group EDGCanon imageCLASS MF743CdwPrinterN/A
BUG COLLISION
15
62
4Nettitude teamNETGEAR RAX30 AX2400-WANRouterN/AFAILURE00
63
4SynacktivCanon imageCLASS MF743CdwPrinterheap buffer overflow
BUG COLLISION
15
64
4Chris AnastasioLexmark MC3224iPrinterheap buffer overflowSUCCESS110
65
4NCC GroupSynology RT6600axRouterRCE
BUG COLLISION
15
66
4
ANHTUD Information Security Department
Canon imageCLASS MF743CdwPrinterheap buffer overflowSUCCESS110
67
4DEVCORELexmark MC3224iPrinterN/A
BUG COLLISION
15
68
4Sonar teamSynology RT6600axRouterN/A
BUG COLLISION
15
69
4namnp teamCanon imageCLASS MF743CdwPrinterN/ASUCCESS110
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100