wouldn't 2^z^x=B^x=R=C^z=2^x^z and 2^y^z=C^z=R=A^y=2^z^y be true?
wouldn't 2^z^x=B^x=R=C^z=2^x^z and 2^y^z=C^z=R=A^y=2^z^y be true?
In a powerful sense what you've got in this case is two secure key exchanges, Alice to Mallory and Mallory to Bob.
Why this distinction? This is what enables us to use digital signatures to solve the identity problem in modern protocols. You encrypt the channel first using this shared secret even though you've no idea who you're talking to, and only then you may bind proof of your identity to this encrypted channel and/or look for proof of the other participant's identity.
If Mallory sits between Alice and Bob, there's no use taking the binding of Bob's identity to the Mallory-Bob channel and showing it to Alice on the Alice-Mallory channel because it's clearly for the wrong encrypted channel and Alice will know she isn't really talking (directly) to Bob.
Secondly, it's not at all clear what you're actually proposing here ... you'll need to be a lot more precise about the exact sequence and the exact operations.
I'm not following your equations (you seem to have C=2^y and 2^x at the same time(?)). Generally the way 3 party works is just like 2 party except you do every operation with both other parties, and the resulting secret is 2^x^y^z.
The best known algorithms for performing the inverse of exponentiation modulo a large integer with at least one large prime factor (called a discrete logarithm) have some steps that parallelize well, but the steps that don't parallelize well still take thousands of years. (Remember that a large prime number has a large prime factor: itself.)
More generally, we can talk about the properties required of this operation we lie about. The two properties we need are quasi-commutativity and the inverse operation being insanely slow. Normal commutativity means f(a, b) = f(b, a), quasicommutativity means f( f( x, a ), b ) = f( f( x, b ), a ).
Another common choice for this quasicommutative operation is multiplication of a point in an elliptic curve by a scalar. Again, it's not the normal integer multiplication we're talking about, which can confuse people. It's called multiplication because it's defined in terms of another operation called addition of two points, and it does follow the normal algebraic rules, allowing you to re-use all of the algebra you learned in elementary school, except that you need to remember every time you write the division sign, you need to remember that that step takes thousands of years even on a multi-million-core supercomputer. With points on an elliptic curve, we usually write points with capital letters and scalars with lower-case letters. a * b * P = b * a * P is the quasicommutative operation with a slow inverse that we use for elliptic curve cryptography.
Remember that with normal integer exponentiation, x^a * x^b = x^(a+b), so all of the normal algebraic rules would still apply if we changed our notation to use logarithmic space and wrote x^a as aX and x^b as bX, and this is the notation usually used when talking about algebraic groups other than integers modulo large integers ("multiplicative groups modulo large integers").