PAM administrators observe one or more of the following warnings after logging into PAM, these warnings have not occurred in the past. What are these warnings and how can they be addressed?
The warnings will occur in Privileged Access Manager in one of the following versions
As part of code changes for the Symantec PAM Maintenance & Security Update (CVE-2025-15467), PAM now has an enhanced security validation to check if internal accounts are using the initial password generated when the environment was deployed. If either of these accounts have not had their password rotated, the warning(s) will be triggered.
To clear the warning, rotate the credentials for the API key associated with the MCApiUser and/or CATapApiUser users.
If either of these accounts are used as part of their respective integration, these integrations must be updated to prevent loss of functionality. For CATapApiUser, refer to Implementing Threat Analytics. For MCApiUser, refer to Integrate with the Management Console.
For more information about how these accounts are used, refer to KB259252- DSApiUser, LDAPApiUser, MCApiUser, & CATapApiUser Usage in PAM.
Note that, per the Broadcom Support site, support for the Management Console will be discontinued in January 2027.