I have 389 DS with AD replication and after a password change via windows, administrator login can see the "unhashed#user#password" clear text in the 389 ds console.
After a dirsrv restart, the field just dissapears, so it seems unhashed#user#password does not get stored in the database.

I Already know that is the expected behavior but it seems to be no purpose to show it on console. It´s possible to disable it?

Look into disabling the attribute all together.

Linked to Bugzilla bug: https://bugzilla.redhat.com/show_bug.cgi?id=830001 (''Red Hat Enterprise Linux 6'')

Pushed to master.

Added initial screened field value.

